CVE-2020-27150: High severity moxa nport ia5150a-ie vulnerability
Published May 14, 2021
·Updated
In multiple versions of NPort IA5000A Series, the result of exporting a device’s configuration contains the passwords of all users on the system and other sensitive data in the original form if “Pre-shared key” doesn’t set.
Affected Software
6 affected components
MOXA Nport Ia5150a Firmware<=1.4
MOXA Nport Ia5150a
MOXA Nport Ia5250a Firmware<=1.4
MOXA Nport Ia5250a
MOXA Nport Ia5450a Firmware<=1.7
MOXA Nport Ia5450a
Event History
May 14, 2021
CVE Published
via MITRE·11:13 AM
Data Sourced
via MITRE·11:13 AM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2020-27150?
CVE-2020-27150 is a vulnerability found in multiple versions of NPort IA5000A Series serial device servers.
2
What is the severity of CVE-2020-27150?
CVE-2020-27150 has a severity rating of 7.5 (High).
3
What is affected by CVE-2020-27150?
Multiple versions of NPort IA5000A Series serial device servers are affected by CVE-2020-27150.
4
What is the impact of CVE-2020-27150?
CVE-2020-27150 could result in the exposure of passwords of all users on the system and other sensitive data in the original form.
5
How can CVE-2020-27150 be fixed?
To fix CVE-2020-27150, ensure that the "Pre-shared key" is properly set in the device's configuration.