Cryptographic Key Vulnerability in Moxa EDS-G516E Series Firmware
CVE-2020-6979
7.5HIGH
Summary
The Moxa EDS-G516E Series firmware versions 5.2 and earlier are vulnerable due to the use of a hard-coded cryptographic key. This design flaw significantly increases the risk of confidential data being compromised, as an attacker could potentially exploit this vulnerability to recover sensitive information.
Affected Version(s)
Moxa EDS-G516E Series firmware, Version 5.2 or lower Moxa EDS-G516E Series firmware, Version 5.2 or lower
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved