CVE-2018-18396: Critical severity MOXA ThingsPro vulnerability
Published Oct 19, 2018
·Updated
Remote Code Execution in Moxa ThingsPro IIoT Gateway and Device Management Software Solutions version 2.1.
Affected Software
1 affected component
MOXA ThingsPro=2.1
Event History
Oct 19, 2018
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-18396?
CVE-2018-18396 has been classified as having a high severity due to its potential for remote code execution.
2
How do I fix CVE-2018-18396?
To mitigate CVE-2018-18396, it is recommended to upgrade to a version of Moxa ThingsPro that is not affected by this vulnerability.
3
What systems are affected by CVE-2018-18396?
CVE-2018-18396 specifically affects Moxa ThingsPro version 2.1.
4
What type of vulnerability is CVE-2018-18396?
CVE-2018-18396 is a remote code execution vulnerability which allows an attacker to execute arbitrary code on the affected systems.
5
Can CVE-2018-18396 be exploited remotely?
Yes, CVE-2018-18396 can be exploited remotely, allowing attackers to gain control over the affected devices.