First published: Wed Dec 04 2024(Updated: )
This vulnerability could lead to denial-of-service or service crashes. Exploitation of the moxa_cmd service, because of insufficient input validation, allows attackers to disrupt operations. If exposed to public networks, the vulnerability poses a significant remote threat, potentially allowing attackers to shut down affected systems.
Credit: psirt@moxa.com
Affected Software | Affected Version | How to fix |
---|---|---|
Moxa VPort 07-3 Series |
Please refer to the security advisories: * CVE-2024-9404: Denial-of-Service Vulnerability Identified in the VPort 07-3 Series https://www.moxa.com/en/support/product-support/security-advisory/mpsa-240930-cve-2024-9404-denial-of-service-vulnerability-identified-in-the-vport-07-3-series * CVE-2024-9404: Denial-of-Service Vulnerability Identified in Multiple EDS, ICS, IKS, and SDS Switches https://www.moxa.com/en/support/product-support/security-advisory/mpsa-240931-cve-2024-9404-denial-of-service-vulnerability-identified-in-multiple-eds,-ics,-iks,-and-sds-switches * CVE-2024-9404: Denial-of-Service Vulnerability Identified in Multiple PT Switches
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-9404 has been classified as a medium-severity vulnerability.
CVE-2024-9404 can lead to a denial-of-service condition or cause a service crash in Moxa IP Cameras.
The vulnerability CVE-2024-9404 specifically affects the Moxa VPort 07-3 Series IP Cameras.
Exploiting CVE-2024-9404 could allow an attacker to disrupt the service on affected Moxa devices.
To mitigate the risks of CVE-2024-9404, users should apply any available patches or updates from Moxa for the affected products.