Sensitive Data Exposure in NPort IA5000A Series by Moxa
CVE-2020-27150
7.5HIGH
What is CVE-2020-27150?
In certain versions of the NPort IA5000A Series, exporting a device's configuration file inadvertently reveals the passwords of all users and other sensitive information in their original format, particularly if the 'Pre-shared key' option is not configured. This exposure can significantly compromise system security by providing unauthorized access to user credentials and sensitive configurations.
Affected Version(s)
NPort IA5000A Series All versions