CVE-2026-0715: High severity MOXA Industrial Linux Secure vulnerability
Moxa Arm-based industrial computers running Moxa Industrial Linux Secure use a device-unique bootloader password provided on the device. An attacker with physical access to the device could use this information to access the bootloader menu via a serial interface. Access to the bootloader menu does not allow full system takeover or privilege escalation. The bootloader enforces digital signature verification and only permits flashing of Moxa-signed images. As a result, an attacker cannot install malicious firmware or execute arbitrary code. The primary impact is limited to a potential temporary denial-of-service condition if a valid image is reflashed. Remote exploitation is not possible.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2026-0715?
The severity of CVE-2026-0715 is classified as high due to the risk of unauthorized physical access to the bootloader menu.
How do I fix CVE-2026-0715?
To fix CVE-2026-0715, ensure that physical access to the devices is restricted and review security practices for handling bootloader passwords.
What systems are affected by CVE-2026-0715?
CVE-2026-0715 affects Moxa Arm-based industrial computers running Moxa Industrial Linux Secure.
What can an attacker do with CVE-2026-0715?
An attacker with physical access could exploit CVE-2026-0715 to access the bootloader menu and potentially manipulate the device's operation.
Is there a specific workaround for CVE-2026-0715?
Currently, there are no specific software patches available; the recommended workaround is to limit physical access to the affected devices.