CVE-2023-1257
CVE-2023-1257

7.6HIGH

Key Information:

Vendor

Moxa

Vendor
CVE Published:
7 March 2023

What is CVE-2023-1257?

Moxa UC Series devices have a vulnerability that enables an attacker with physical access to restart the device and compromise the BIOS. This allows modifications to command line options, leading to unauthorized access to the terminal. Once inside, the attacker can manipulate the device's authentication files to create new users, ultimately gaining full control over the system. This potential exposure poses a significant risk to device integrity and security in critical environments.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

UC-2100 Series V1.3 to V1.5

UC-2100-W Series V1.3 to V1.5

UC-3100 Series V1.2 to V2.0

References

CVSS V3.1

Score:
7.6
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Physical
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.