CVSS2
Attack Vector
NETWORK
Attack Complexity
MEDIUM
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
AV:N/AC:M/Au:N/C:P/I:P/A:P
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
AI Score
Confidence
High
EPSS
Percentile
38.8%
Cross-site request forgery (CSRF) vulnerability on Moxa MiiNePort_E1_4641 devices with firmware 1.1.10 Build 09120714, MiiNePort_E1_7080 devices with firmware 1.1.10 Build 09120714, MiiNePort_E2_1242 devices with firmware 1.1 Build 10080614, MiiNePort_E2_4561 devices with firmware 1.1 Build 10080614, and MiiNePort E3 devices with firmware 1.0 Build 11071409 allows remote attackers to hijack the authentication of arbitrary users.
Vendor | Product | Version | CPE |
---|---|---|---|
moxa | miineport_e2_1242 | - | cpe:2.3:h:moxa:miineport_e2_1242:-:*:*:*:*:*:*:* |
moxa | miineport_e2_1242_firmware | 1.1 | cpe:2.3:o:moxa:miineport_e2_1242_firmware:1.1:*:*:*:*:*:*:* |
moxa | miineport_e2_4561 | - | cpe:2.3:h:moxa:miineport_e2_4561:-:*:*:*:*:*:*:* |
moxa | miineport_e2_4561_firmware | 1.1 | cpe:2.3:o:moxa:miineport_e2_4561_firmware:1.1:*:*:*:*:*:*:* |
moxa | miineport_e1_7080 | - | cpe:2.3:h:moxa:miineport_e1_7080:-:*:*:*:*:*:*:* |
moxa | miineport_e1_7080_firmware | 1.1.10 | cpe:2.3:o:moxa:miineport_e1_7080_firmware:1.1.10:*:*:*:*:*:*:* |
moxa | miineport_e3 | - | cpe:2.3:h:moxa:miineport_e3:-:*:*:*:*:*:*:* |
moxa | miineport_e3_firmware | 1.0 | cpe:2.3:o:moxa:miineport_e3_firmware:1.0:*:*:*:*:*:*:* |
moxa | miineport_e1_4641 | - | cpe:2.3:h:moxa:miineport_e1_4641:-:*:*:*:*:*:*:* |
moxa | miineport_e1_4641_firmware | 1.1.10 | cpe:2.3:o:moxa:miineport_e1_4641_firmware:1.1.10:*:*:*:*:*:*:* |
CVSS2
Attack Vector
NETWORK
Attack Complexity
MEDIUM
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
AV:N/AC:M/Au:N/C:P/I:P/A:P
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
AI Score
Confidence
High
EPSS
Percentile
38.8%