CVE-2019-6559: Medium severity moxa iks-g6824a firmware vulnerability
Published Mar 5, 2019
·Updated
Moxa IKS and EDS allow remote authenticated users to cause a denial of service via a specially crafted packet, which may cause the switch to crash.
Affected Software
16 affected components
All of the following
MOXA Iks-g6824a Firmware<=4.5
MOXA IKS-G6824A
All of the following
MOXA Eds-405a Firmware<=3.8
MOXA EDS-405A
All of the following
MOXA Eds-408a Firmware<=3.8
MOXA EDS-408A
All of the following
MOXA Eds-510a Firmware<=3.8
MOXA EDS-510A
MOXA Iks-g6824a Firmware<=4.5
MOXA IKS-G6824A
MOXA Eds-405a Firmware<=3.8
MOXA EDS-405A
MOXA Eds-408a Firmware<=3.8
MOXA EDS-408A
MOXA Eds-510a Firmware<=3.8
MOXA EDS-510A
Event History
Mar 5, 2019
CVE Published
08:29 PM
Data Sourced
via NVD·08:29 PM
DescriptionSeverityWeaknessAffected Software
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-6559?
CVE-2019-6559 has been rated with a CVSS score indicating it can lead to a denial of service.
2
How do I fix CVE-2019-6559?
To fix CVE-2019-6559, update the affected Moxa firmware to a version beyond 4.5 for IKS or 3.8 for EDS.
3
Who is affected by CVE-2019-6559?
CVE-2019-6559 affects Moxa IKS G6824A firmware up to version 4.5 and EDS 405A, 408A, and 510A firmware up to version 3.8.
4
What type of vulnerability is CVE-2019-6559?
CVE-2019-6559 is a denial of service vulnerability that allows remote authenticated users to crash the device.
5
Can CVE-2019-6559 be exploited remotely?
Yes, CVE-2019-6559 can be exploited remotely by authenticated users sending specially crafted packets.