CVE-2019-10969: Input Validation
Moxa EDR 810, all versions 5.1 and prior, allows an authenticated attacker to abuse the ping feature to execute unauthorized commands on the router, which may allow an attacker to perform remote code execution.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-10969?
CVE-2019-10969 has a high severity rating due to its potential for remote code execution by an authenticated attacker.
How do I fix CVE-2019-10969?
To fix CVE-2019-10969, update the Moxa EDR 810 to a version later than 5.1.
What type of attack is possible with CVE-2019-10969?
CVE-2019-10969 allows an authenticated attacker to execute unauthorized commands on the router, potentially leading to remote code execution.
Which versions of Moxa EDR 810 are affected by CVE-2019-10969?
All versions of Moxa EDR 810 firmware up to and including version 5.1 are affected by CVE-2019-10969.
What is the exploitation impact of CVE-2019-10969?
The exploitation of CVE-2019-10969 can result in unauthorized command execution, compromising the integrity and availability of the affected device.