CVE-2019-19707: High severity moxa eds-g508e firmware vulnerability
Published Dec 11, 2019
·Updated
On Moxa EDS-G508E, EDS-G512E, and EDS-G516E devices (with firmware through 6.0), denial of service can occur via PROFINET DCE-RPC endpoint discovery packets.
Affected Software
6 affected components
MOXA Eds-g508e Firmware<=6.0
MOXA EDS-G508E
MOXA Eds-g512e Firmware<=6.0
MOXA EDS-G512E
MOXA Eds-g516e Firmware<=6.0
MOXA EDS-G516E
Event History
Dec 11, 2019
CVE Published
via MITRE·01:03 AM
Data Sourced
via MITRE·01:03 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-19707?
CVE-2019-19707 is classified as a denial of service vulnerability affecting certain Moxa Ethernet switches.
2
How do I fix CVE-2019-19707?
To fix CVE-2019-19707, upgrade the firmware of Moxa EDS-G508E, EDS-G512E, or EDS-G516E devices to a version later than 6.0.
3
Which devices are affected by CVE-2019-19707?
The affected devices include Moxa EDS-G508E, EDS-G512E, and EDS-G516E models with firmware version 6.0 or earlier.
4
What impact does CVE-2019-19707 have on my network?
CVE-2019-19707 can lead to a denial of service, causing disruption to network services on affected Moxa devices.
5
Is there a workaround for CVE-2019-19707?
There are no documented workarounds for CVE-2019-19707; updating the firmware is the recommended solution.