CVE-2021-4161: ICSA-21-357-01 Moxa MGate Protocol Gateways
The affected products contain vulnerable firmware, which could allow an attacker to sniff the traffic and decrypt login credential details. This could give an attacker admin rights through the HTTP web server.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2021-4161?
CVE-2021-4161 is a vulnerability in the affected products' firmware that could allow an attacker to sniff the traffic and decrypt login credential details.
How does CVE-2021-4161 impact the affected products?
CVE-2021-4161 could give an attacker admin rights through the HTTP web server.
Which products are affected by CVE-2021-4161?
The Moxa Mgate Mb3180 Firmware up to version 2.2, Moxa Mgate Mb3280 Firmware up to version 4.1, and Moxa Mgate Mb3480 Firmware up to version 3.2 are affected.
What is the severity of CVE-2021-4161?
CVE-2021-4161 has a severity rating of 7.5, which is considered critical.
How can I mitigate CVE-2021-4161?
To mitigate CVE-2021-4161, it is recommended to update the firmware of the affected products to a secure version.
Where can I find more information about CVE-2021-4161?
You can find more information about CVE-2021-4161 at the following reference: [link](https://www.cisa.gov/uscert/ics/advisories/icsa-21-357-01).