CVE-2019-6561: CSRF
Cross-site request forgery has been identified in Moxa IKS and EDS, which may allow for the execution of unauthorized actions on the device.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-6561?
CVE-2019-6561 is classified as a medium severity vulnerability due to its potential for cross-site request forgery.
How do I fix CVE-2019-6561?
To fix CVE-2019-6561, update the affected Moxa firmware to the latest versions beyond 4.5 for IKS and 3.8 for EDS devices.
Which devices are affected by CVE-2019-6561?
CVE-2019-6561 affects Moxa IKS-G6824A firmware up to version 4.5 and Moxa EDS-405A, EDS-408A, and EDS-510A firmware up to version 3.8.
What type of attack does CVE-2019-6561 enable?
CVE-2019-6561 enables an attacker to execute unauthorized actions on the device through cross-site request forgery.
Is CVE-2019-6561 a remote or local vulnerability?
CVE-2019-6561 is considered a remote vulnerability since it can be exploited over the network without requiring physical access to the devices.