CVE-2025-6950: Critical severity MOXA network security appliances and routers vulnerability
An Use of Hard-coded Credentials vulnerability has been identified in Moxa’s network security appliances and routers. The system employs a hard-coded secret key to sign JSON Web Tokens (JWT) used for authentication. This insecure implementation allows an unauthenticated attacker to forge valid tokens, thereby bypassing authentication controls and impersonating any user. Exploitation of this vulnerability can result in complete system compromise, enabling unauthorized access, data theft, and full administrative control over the affected device. While successful exploitation can severely impact the confidentiality, integrity, and availability of the affected device itself, there is no loss of confidentiality or integrity within any subsequent systems.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-6950?
CVE-2025-6950 is classified as a high severity vulnerability due to the potential for unauthenticated attackers to forge valid authentication tokens.
How do I fix CVE-2025-6950?
To mitigate CVE-2025-6950, you should update your Moxa network security appliances and routers to the latest firmware that does not use hard-coded credentials.
What type of vulnerability is CVE-2025-6950?
CVE-2025-6950 is an Use of Hard-coded Credentials vulnerability.
What impact could CVE-2025-6950 have on my network?
CVE-2025-6950 could allow an attacker to gain unauthorized access to your network by forging authentication tokens.
Which products are affected by CVE-2025-6950?
CVE-2025-6950 affects Moxa's network security appliances and routers.