Resource Exhaustion Vulnerability in Moxa NPort Network Devices
CVE-2017-14028

7.5HIGH

Key Information:

Vendor
Moxa
Vendor
CVE Published:
16 November 2017

Summary

A critical resource exhaustion vulnerability has been identified within Moxa NPort network devices. This issue arises when an attacker sends a significant number of TCP SYN packets, which can overwhelm the system's memory resources. As a result, legitimate users may experience disruptions or be denied access to services. The affected products include several versions of NPort 5110, as well as NPort 5130 and NPort 5150. Effective remediation strategies are essential for protecting network integrity and ensuring continuous service availability.

Affected Version(s)

Moxa NPort 5110, 5130, and 5150 Moxa NPort 5110, 5130, and 5150

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.