6.8
CVSSv2

CVE-2016-2285

Published: 31/05/2016 Updated: 30/11/2016
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cross-site request forgery (CSRF) vulnerability on Moxa MiiNePort_E1_4641 devices with firmware 1.1.10 Build 09120714, MiiNePort_E1_7080 devices with firmware 1.1.10 Build 09120714, MiiNePort_E2_1242 devices with firmware 1.1 Build 10080614, MiiNePort_E2_4561 devices with firmware 1.1 Build 10080614, and MiiNePort E3 devices with firmware 1.0 Build 11071409 allows remote malicious users to hijack the authentication of arbitrary users.

Vulnerable Product Search on Vulmon Subscribe to Product

moxa miineport_e2_1242_firmware 1.1

moxa miineport_e2_4561_firmware 1.1

moxa miineport_e1_7080_firmware 1.1.10

moxa miineport_e3_firmware 1.0

moxa miineport_e1_4641_firmware 1.1.10