First published: Tue Nov 29 2022(Updated: )
Cradlepoint IBR600 NCOS versions 6.5.0.160bc2e and prior are vulnerable to shell escape, which enables local attackers with non-superuser credentials to gain full, unrestrictive shell access which may allow an attacker to execute arbitrary code.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Moxa Uc-8580-t-lx Firmware | =1.1 | |
Moxa Uc-8580-t-lx | ||
Moxa Uc-8580-t-ct-lx Firmware | =1.1 | |
Moxa Uc-8580-t-ct-lx | ||
Moxa Uc-8580-t-q-lx Firmware | =1.1 | |
Moxa Uc-8580-t-q-lx | ||
Moxa Uc-8580-t-ct-q-lx Firmware | =1.1 | |
Moxa Uc-8580-t-ct-q-lx | ||
Moxa Uc-8580-q-lx Firmware | =1.1 | |
Moxa Uc-8580-q-lx | ||
Moxa Uc-8580-lx Firmware | =1.1 | |
Moxa Uc-8580-lx | ||
Moxa Uc-8540-lx Firmware | >=1.0<=1.2 | |
Moxa Uc-8540-lx | ||
Moxa Uc-8540-t-ct-lx Firmware | >=1.0<=1.2 | |
Moxa Uc-8540-t-ct-lx | ||
Moxa Uc-8540-t-lx Firmware | >=1.0<=1.2 | |
Moxa Uc-8540-t-lx | ||
Moxa Uc-8410a-lx Firmware | =2.2 | |
Moxa Uc-8410a-lx | ||
Moxa Uc-8410a-nw-lx Firmware | =2.2 | |
Moxa Uc-8410a-nw-lx | ||
Moxa Uc-8410a-nw-t-lx Firmware | =2.2 | |
Moxa Uc-8410a-nw-t-lx | ||
Moxa Uc-8410a-t-lx Firmware | =2.2 | |
Moxa Uc-8410a-t-lx | ||
Moxa Uc-8210-t-lx-s Firmware | >=1.0<=2.4 | |
Moxa Uc-8210-t-lx-s | ||
Moxa Uc-8220-t-lx Firmware | >=1.0<=2.4 | |
Moxa Uc-8220-t-lx | ||
Moxa Uc-8220-t-lx-us-s Firmware | >=1.0<=2.4 | |
Moxa Uc-8220-t-lx-us-s | ||
Moxa Uc-8220-t-lx-eu-s Firmware | >=1.0<=2.4 | |
Moxa Uc-8220-t-lx-eu-s | ||
Moxa Uc-8220-t-lx-ap-s Firmware | >=1.0<=2.4 | |
Moxa Uc-8220-t-lx-ap-s | ||
Moxa Uc-8112a-me-t-lx Firmware | =1.0 | |
Moxa Uc-8112a-me-t-lx Firmware | =1.1 | |
Moxa Uc-8112a-me-t-lx | ||
Moxa Uc-8131-lx Firmware | =1.2 | |
Moxa Uc-8131-lx Firmware | =1.3 | |
Moxa Uc-8131-lx | ||
Moxa Uc-8132-lx Firmware | =1.2 | |
Moxa Uc-8132-lx Firmware | =1.3 | |
Moxa Uc-8132-lx | ||
Moxa Uc-8162-lx Firmware | =1.2 | |
Moxa Uc-8162-lx Firmware | =1.3 | |
Moxa Uc-8162-lx | ||
Moxa Uc-8112-lx Firmware | =1.2 | |
Moxa Uc-8112-lx Firmware | =1.3 | |
Moxa Uc-8112-lx | ||
Moxa Uc-5101-lx Firmware | =1.2 | |
Moxa Uc-5101-lx | ||
Moxa Uc-5101-t-lx Firmware | =1.2 | |
Moxa Uc-5101-t-lx | ||
Moxa Uc-5102-lx Firmware | =1.2 | |
Moxa Uc-5102-lx | ||
Moxa Uc-5102-t-lx Firmware | =1.2 | |
Moxa Uc-5102-t-lx | ||
Moxa Uc-5111-lx Firmware | =1.2 | |
Moxa Uc-5111-lx | ||
Moxa Uc-5111-t-lx Firmware | =1.2 | |
Moxa Uc-5111-t-lx | ||
Moxa Uc-5112-lx Firmware | =1.2 | |
Moxa Uc-5112-lx | ||
Moxa Uc-5112-t-lx Firmware | =1.2 | |
Moxa Uc-5112-t-lx | ||
Moxa Uc-3101-t-ap-lx Firmware | >=1.2<=2.0 | |
Moxa Uc-3101-t-ap-lx | ||
Moxa Uc-3101-t-eu-lx Firmware | >=1.2<=2.0 | |
Moxa Uc-3101-t-eu-lx | ||
Moxa Uc-3101-t-us-lx Firmware | >=1.2<=2.0 | |
Moxa Uc-3101-t-us-lx | ||
Moxa Uc-3111-t-ap-lx Firmware | >=1.2<=2.0 | |
Moxa Uc-3111-t-ap-lx | ||
Moxa Uc-3111-t-ap-lx-nw Firmware | >=1.2<=2.0 | |
Moxa Uc-3111-t-ap-lx-nw | ||
Moxa Uc-3111-t-eu-lx Firmware | >=1.2<=2.0 | |
Moxa Uc-3111-t-eu-lx | ||
Moxa Uc-3111-t-eu-lx-nw Firmware | >=1.2<=2.0 | |
Moxa Uc-3111-t-eu-lx-nw | ||
Moxa Uc-3111-t-us-lx Firmware | >=1.2<=2.0 | |
Moxa Uc-3111-t-us-lx | ||
Moxa Uc-3111-t-us-lx-nw Firmware | >=1.2<=2.0 | |
Moxa Uc-3111-t-us-lx-nw | ||
Moxa Uc-3121-t-ap-lx Firmware | >=1.2<=2.0 | |
Moxa Uc-3121-t-ap-lx | ||
Moxa Uc-3121-t-eu-lx Firmware | >=1.2<=2.0 | |
Moxa Uc-3121-t-eu-lx | ||
Moxa Uc-3121-t-us-lx Firmware | >=1.2<=2.0 | |
Moxa Uc-3121-t-us-lx | ||
Moxa Uc-2101-lx Firmware | >=1.3<=1.5 | |
Moxa Uc-2101-lx | ||
Moxa Uc-2102-lx Firmware | >=1.3<=1.5 | |
Moxa Uc-2102-lx | ||
Moxa Uc-2104-lx Firmware | >=1.3<=1.5 | |
Moxa Uc-2104-lx | ||
Moxa Uc-2111-lx Firmware | >=1.3<=1.5 | |
Moxa Uc-2111-lx | ||
Moxa Uc-2112-lx Firmware | >=1.3<=1.5 | |
Moxa Uc-2112-lx | ||
Moxa Uc-2114-t-lx Firmware | >=1.3<=1.5 | |
Moxa Uc-2114-t-lx | ||
Moxa Uc-2116-t-lx Firmware | >=1.3<=1.5 | |
Moxa Uc-2116-t-lx | ||
Cradlepoint IBR600 NetCloud OS (NCOS) Version: 6.5.0.160bc2e and prior |
Cradlepoint recommends users to update to at least version: * NCOS v7.22.70 NCOS release 7.1.0 and greater are no longer available for manual or offline download and are performed via the NetCloud Manager, which requires a subscription. For more information and NCOS upgrade best practices visit Cradlepoint Netcloud Service https://cradlepoint.com/products/netcloud-service/ . For more information about the latest update, see the Cradlepoint Release Notes https://d2c9o94y5j661e.cloudfront.net/FW-ReleaseNotesNCOS7.22.70-050722.pdf .
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.