First published: Sun Dec 31 2023(Updated: )
A clickjacking vulnerability has been identified in OnCell G3150A-LTE Series firmware versions v1.3 and prior. This vulnerability is caused by incorrectly restricts frame objects, which can lead to user confusion about which interface the user is interacting with. This vulnerability may lead the attacker to trick the user into interacting with the application.
Credit: psirt@moxa.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Moxa Oncell G3150A-LTE | <=1.3 | |
Moxa Oncell G3150A-LTE |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-6093 is considered a moderate severity vulnerability due to its potential to confuse users through malicious interface interactions.
CVE-2023-6093 affects Moxa OnCell G3150A-LTE firmware versions 1.3 and prior, allowing for clickjacking attacks.
To fix CVE-2023-6093, upgrade to the latest firmware version provided by Moxa that addresses this vulnerability.
The risks associated with CVE-2023-6093 include unauthorized actions being performed by users due to misleading interface appearances.
Yes, CVE-2023-6093 can be exploited remotely if a user is tricked into interacting with a malicious website.