CVE-2020-6991: Critical severity MOXA Eds-g516e Firmware vulnerability
Published Mar 24, 2020
·Updated
In Moxa EDS-G516E Series firmware, Version 5.2 or lower, weak password requirements may allow an attacker to gain access using brute force.
Affected Software
8 affected components
MOXA Eds-g516e Firmware<=5.2
MOXA EDS-G516E
MOXA Eds-510e Firmware<=5.2
MOXA Eds-510e
All of the following
MOXA Eds-g516e Firmware<=5.2
MOXA EDS-G516E
All of the following
MOXA Eds-510e Firmware<=5.2
MOXA Eds-510e
Event History
Mar 24, 2020
CVE Published
via MITRE·08:29 PM
Data Sourced
via MITRE·08:29 PM
DescriptionWeakness
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2020-6991?
CVE-2020-6991 is a vulnerability in Moxa EDS-G516E Series firmware Version 5.2 or lower that allows an attacker to gain access using brute force due to weak password requirements.
2
What is the severity of CVE-2020-6991?
The severity of CVE-2020-6991 is critical with a CVSS score of 9.8.
3
How can an attacker exploit CVE-2020-6991?
An attacker can exploit CVE-2020-6991 by using brute force to guess weak passwords and gain unauthorized access to Moxa EDS-G516E devices.
4
Which versions of Moxa EDS-G516E firmware are affected by CVE-2020-6991?
Versions 5.2 or lower of Moxa EDS-G516E firmware are affected by CVE-2020-6991.
5
Is Moxa EDS-G516E hardware affected by CVE-2020-6991?
No, Moxa EDS-G516E hardware is not affected by CVE-2020-6991.