CVE-2020-7003: High severity MOXA Iologik 2512 Firmware vulnerability
In Moxa ioLogik 2500 series firmware, Version 3.0 or lower, and IOxpress configuration utility, Version 2.3.0 or lower, sensitive information is transmitted over some web applications in clear text.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-7003?
CVE-2020-7003 has a severity rating classified as high due to the exposure of sensitive information transmitted in clear text.
How do I fix CVE-2020-7003?
To remediate CVE-2020-7003, upgrade the Moxa ioLogik 2500 series firmware to a version higher than 3.0.
Which devices are affected by CVE-2020-7003?
CVE-2020-7003 affects the Moxa ioLogik 2500 series firmware versions 3.0 or lower and the IOxpress configuration utility versions 2.3.0 or lower.
What type of data is compromised in CVE-2020-7003?
CVE-2020-7003 exposes sensitive information because it is transmitted over the web applications in clear text.
Are there any workarounds for CVE-2020-7003?
Currently, the only effective workaround for CVE-2020-7003 is to immediately update the firmware to the latest version.