VendorsMoxanport_ia5450aany version
Vulnerabilities

Moxa NPort IA5450A any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2023-4929
NPort 5000 Series Firmware Improper Validation of Integrity Check Vulnerability
Published 2023-10-03 · Modified
8.8EPSS 0.003
CVE-2020-27150
In multiple versions of NPort IA5000A Series, the result of exporting a device’s configuration contains the passwords of all users on the system and other sensitive data in the original form if “Pre-shared key” doesn’t set.
Published 2021-05-14 · Modified
7.5EPSS 0.011
CVE-2020-27185
Cleartext transmission of sensitive information via Moxa Service in NPort IA5000A series serial devices. Successfully exploiting the vulnerability could enable attackers to read authentication data, device configuration, and other sensitive data transmitted over Moxa Service.
Published 2021-05-14 · Modified
7.5EPSS 0.007
CVE-2020-27149
By exploiting a vulnerability in NPort IA5150A/IA5250A Series before version 1.5, a user with “Read Only” privilege level can send requests via the web console to have the device’s configuration changed.
Published 2021-05-14 · Modified
6.5EPSS 0.007
CVE-2020-27184
The NPort IA5000A Series devices use Telnet as one of the network device management services. Telnet does not support the encryption of client-server communications, making it vulnerable to Man-in-the-Middle attacks.
Published 2021-05-14 · Modified
5.9EPSS 0.003