First published: Tue Nov 22 2022(Updated: )
UC-8100A-ME-T System Image: Versions v1.0 to v1.6, UC-2100 System Image: Versions v1.0 to v1.12, UC-2100-W System Image: Versions v1.0 to v 1.12, UC-3100 System Image: Versions v1.0 to v1.6, UC-5100 System Image: Versions v1.0 to v1.4, UC-8100 System Image: Versions v3.0 to v3.5, UC-8100-ME-T System Image: Versions v3.0 and v3.1, UC-8200 System Image: v1.0 to v1.5, AIG-300 System Image: v1.0 to v1.4, UC-8410A with Debian 9 System Image: Versions v4.0.2 and v4.1.2, UC-8580 with Debian 9 System Image: Versions v2.0 and v2.1, UC-8540 with Debian 9 System Image: Versions v2.0 and v2.1, and DA-662C-16-LX (GLB) System Image: Versions v1.0.2 to v1.1.2 of Moxa's ARM-based computers have an execution with unnecessary privileges vulnerability, which could allow an attacker with user-level privileges to gain root privileges.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Moxa UC-8100A-ME-T System Image: Versions v1.0 to v1.6 | ||
Moxa UC-2100 System Image: Versions v1.0 to v1.12 | ||
Moxa UC-2100-W System Image: Versions v1.0 to v 1.12 | ||
Moxa UC-3100 System Image: Versions v1.0 to v1.6 | ||
Moxa UC-5100 System Image: Versions v1.0 to v1.4 | ||
Moxa UC-8100 System Image: Versions v3.0 to v3.5 | ||
Moxa UC-8100-ME-T System Image: Versions v3.0 and v3.1 | ||
Moxa UC-8200 System Image: v1.0 to v1.5 | ||
Moxa AIG-300 System Image: v1.0 to v1.4 | ||
Moxa UC-8410A with Debian 9 System Image: Versions v4.0.2 and v4.1.2 | ||
Moxa UC-8580 with Debian 9 System Image: Versions v2.0 and v2.1 | ||
Moxa UC-8540 with Debian 9 System Image: Versions v2.0 and v2.1 | ||
Moxa DA-662C-16-LX | ||
Moxa UC-2101-LX | >=1.0<=1.12 | |
Moxa UC-2101-LX Firmware | ||
Moxa UC-2102-LX | >=1.0<=1.2 | |
Moxa UC-2102-LX | ||
Moxa UC-2104-LX | >=1.0<=1.2 | |
Moxa UC-2104-LX | ||
Moxa UC-2111-LX Firmware | >=1.0<=1.2 | |
Moxa UC-2111-LX Firmware | ||
Moxa UC-2112-LX | >=1.0<=1.2 | |
Moxa UC-2112-LX Firmware | ||
Moxa UC-2102-T-LX | >=1.0<=1.2 | |
Moxa UC-2102-T-LX Firmware | ||
Moxa UC-2114-T-LX | >=1.0<=1.2 | |
Moxa UC-2114-T-LX Firmware | ||
Moxa UC-2116-T-LX | >=1.0<=1.2 | |
Moxa UC-2116-T-LX Firmware | ||
Moxa UC-3101-T-US-LX | >=1.0<=1.6 | |
Moxa UC-3101-T-US-LX Firmware | ||
Moxa UC-3101-T-EU-LX Firmware | >=1.0<=1.6 | |
Moxa UC-3101-T-EU-LX Firmware | ||
Moxa UC-3111-T-US-LX Firmware | >=1.0<=1.6 | |
Moxa UC-3111-T-US-LX Firmware | ||
Moxa UC-3111-T-EU-LX | >=1.0<=1.6 | |
Moxa UC-3111-T-EU-LX Firmware | ||
Moxa UC-3121-T-US-LX Firmware | >=1.0<=1.6 | |
Moxa UC-3121-T-US-LX Firmware | ||
Moxa uc-3121-t-eu-lx firmware | >=1.0<=1.6 | |
Moxa UC-3121-T-EU-LX | ||
Moxa UC-3101-T-AP-LX | >=1.0<=1.6 | |
Moxa UC-3101-T-AP-LX | ||
Moxa UC-3111-T-AP-LX | >=1.0<=1.6 | |
Moxa UC-3111-T-AP-LX Firmware | ||
Moxa UC-3121-T-AP-LX | >=1.0<=1.6 | |
Moxa UC-3121-T-AP-LX | ||
Moxa UC-3111-T-EU-LX-NW Firmware | >=1.0<=1.6 | |
Moxa UC-3111-T-EU-LX-NW Firmware | ||
Moxa UC-3111-T-AP-LX-NW | >=1.0<=1.6 | |
Moxa UC-3111-T-AP-LX-NW Firmware | ||
Moxa UC-3111-T-US-LX-NW | >=1.0<=1.6 | |
Moxa UC-3111-T-US-LX-NW Firmware | ||
Moxa UC-5101-LX Firmware | >=1.0<=1.4 | |
Moxa UC-5101-LX Firmware | ||
Moxa UC-5101-T-LX | >=1.0<=1.4 | |
Moxa UC-5101-T-LX Firmware | ||
Moxa UC-5102-LX | >=1.0<=1.4 | |
Moxa UC-5102-LX Firmware | ||
Moxa UC-5102-T-LX | >=1.0<=1.4 | |
Moxa UC-5102-T-LX Firmware | ||
Moxa UC-5111-LX | >=1.0<=1.4 | |
Moxa UC-5111-LX | ||
Moxa uc-5111-t-lx | >=1.0<=1.4 | |
Moxa UC-5111-T-LX Firmware | ||
Moxa UC-5112-LX | >=1.0<=1.4 | |
Moxa UC-5112-LX Firmware | ||
Moxa UC-5112-T-LX | >=1.0<=1.4 | |
Moxa UC-5112-T-LX Firmware | ||
Moxa UC-8131-LX | >=3.0<=3.5 | |
Moxa UC-8131-LX Firmware | ||
Moxa UC-8132-LX | >=3.0<=3.5 | |
Moxa UC-8132-LX | ||
Moxa UC-8162-LX Firmware | >=3.0<=3.5 | |
Moxa UC-8162-LX Firmware | ||
Moxa UC-8112-LX | >=3.0<=3.5 | |
Moxa UC-8112-LX | ||
Moxa UC-8112-ME-T-LX1 | =3.0 | |
Moxa UC-8112-ME-T-LX1 | =3.1 | |
Moxa UC-8112-ME-T-LX1 Firmware | ||
Moxa UC-8112-ME-T-LX | =3.0 | |
Moxa UC-8112-ME-T-LX | =3.1 | |
Moxa UC-8112-ME-T-LX | ||
Moxa UC-8112A-ME-T-LX | >=1.0<=1.6 | |
Moxa UC-8112A-ME-T-LX Firmware | ||
Moxa UC-8220-T-LX Firmware | >=1.0<=1.5 | |
Moxa UC-8220-T-LX | ||
Moxa UC-8220-T-LX | >=1.0<=1.5 | |
Moxa UC-8220-T-LX | ||
Moxa UC-8220-T-LX-US-S | >=1.0<=1.5 | |
Moxa UC-8220-T-LX | ||
Moxa UC-8220-T-LX-EU-S Firmware | >=1.0<=1.5 | |
Moxa UC-8220-T-LX | ||
Moxa UC-8220-T-LX-AP-S | >=1.0<=1.5 | |
Moxa UC-8220-T-LX | ||
Moxa AIG-301-T-US-AZU-LX | >=1.0<=1.4 | |
Moxa aig-301-t-us-azu-lx firmware | ||
Moxa aig-301-t-eu-azu-lx | >=1.0<=1.4 | |
Moxa aig-301-t-eu-azu-lx | ||
Moxa AIG-301-T-AP-AZU-LX Firmware | >=1.0<=1.4 | |
Moxa aig-301-t-ap-azu-lx | ||
Moxa AIG-301-T-CN-AZU-LX | >=1.0<=1.4 | |
Moxa AIG-301-T-CN-AZU-LX Firmware | ||
Moxa AIG-301-T-AZU-LX | >=1.0<=1.4 | |
Moxa aig-301-t-azu-lx firmware | ||
Moxa AIG-301-AZU-LX | >=1.0<=1.4 | |
Moxa AIG-301-AZU-LX | ||
Moxa AIG-301-US-AZU-LX | >=1.0<=1.4 | |
Moxa AIG-301-US-AZU-LX | ||
Moxa AIG-301-EU-AZU-LX | >=1.0<=1.4 | |
Moxa AIG-301-EU-AZU-LX | ||
Moxa AIG-301-AP-AZU-LX | >=1.0<=1.4 | |
Moxa AIG-301-AZU-LX | ||
Moxa AIG-301-CN-AZU-LX | >=1.0<=1.4 | |
Moxa AIG-301-CN-AZU-LX | ||
Moxa UC-8410A-LX | >=4.0.2<=4.1.2 | |
Moxa UC-8410A-LX Firmware | ||
Debian GNU/Linux | =9.0 | |
Moxa UC-8410A-T-LX Firmware | >=4.0.2<=4.1.2 | |
Moxa UC-8410A-T-LX Firmware | ||
Moxa UC-8410A-NW-LX | >=4.0.2<=4.1.2 | |
Moxa UC-8410A-NW-LX Firmware | ||
Moxa UC-8410A-NW-T-LX | >=4.0.2<=4.1.2 | |
Moxa UC-8410A-NW-T-LX Firmware | ||
Moxa UC-8580-LX Firmware | =2.0 | |
Moxa UC-8580-LX Firmware | =2.1 | |
Moxa UC-8580-LX Firmware | ||
Moxa UC-8580-T-LX | =2.0 | |
Moxa UC-8580-T-LX | =2.1 | |
Moxa UC-8580-T-LX Firmware | ||
Moxa uc-8580-t-ct-lx | =2.0 | |
Moxa uc-8580-t-ct-lx | =2.1 | |
Moxa UC-8580-T-CT-Q-LX | ||
Moxa UC-8580-T-Q-LX Firmware | =2.0 | |
Moxa UC-8580-T-Q-LX Firmware | =2.1 | |
Moxa UC-8580-T-Q-LX Firmware | ||
Moxa UC-8580-T-Q-LX | =2.0 | |
Moxa UC-8580-T-Q-LX | =2.1 | |
Moxa UC-8580-T-Q-LX Firmware | ||
Moxa UC-8580-T-CT-Q-LX | =2.0 | |
Moxa UC-8580-T-CT-Q-LX | =2.1 | |
Moxa UC-8580-T-CT-Q-LX | ||
Moxa UC-8540-LX Firmware | =2.0 | |
Moxa UC-8540-LX Firmware | =2.1 | |
Moxa uc-8540-lx | ||
Moxa UC-8540-LX Firmware | =2.0 | |
Moxa UC-8540-LX Firmware | =2.1 | |
Moxa UC-8540-T-LX | ||
Moxa UC-8540-T-CT-LX Firmware | =2.0 | |
Moxa UC-8540-T-CT-LX Firmware | =2.1 | |
Moxa uc-8540-t-ct-lx | ||
Moxa DA-662C-16-LX | >=1.0.2<=1.1.2 | |
Moxa DA-662C-16-LX firmware |
Moxa developed updates to address this vulnerability. Users should follow the instructions in Moxa's security advisory to update their system image.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-3088 has been classified with a high severity rating due to potential exploitation risks.
To mitigate CVE-2022-3088, update the affected Moxa devices to the latest firmware versions as specified by the vendor.
CVE-2022-3088 impacts several Moxa products including the UC-8100A-ME-T and UC-2100 System Images, among others.
As of now, there are no reported exploits actively targeting CVE-2022-3088 in the wild.
CVE-2022-3088 addresses vulnerabilities that can lead to unauthorized access or control of the affected Moxa systems.