First published: Tue Feb 25 2020(Updated: )
The usage of hard-coded cryptographic keys within the ServiceAgent binary allows for the decryption of captured traffic across the network from or to the Moxa AWK-3131A firmware version 1.13.
Credit: talos-cna@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Moxa AWK-3131A firmware | =1.13 | |
Moxa AWK-3131A |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2019-5137.
The severity of CVE-2019-5137 is high with a severity value of 7.5.
CVE-2019-5137 allows for the decryption of captured network traffic.
The Moxa AWK-3131A firmware version 1.13 is affected by CVE-2019-5137.
To fix CVE-2019-5137, it is recommended to update the Moxa AWK-3131A firmware to a version that addresses this vulnerability.