TN-4900 Series firmware versions v1.2.4 and prior and TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command injection vulnerability. This vulnerability stems from inadequate input validation in the certificate management function, which could potentially allow malicious users to execute remote code on affected devices.
                
            Metrics
Affected Vendors & Products
References
        History
                    Mon, 28 Oct 2024 06:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | TN-4900 Series firmware versions v1.2.4 and prior and TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command injection vulnerability. This vulnerability stems from inadequate input validation in the certificate management function, which could potentially allow malicious users to execute remote code on affected devices. | TN-4900 Series firmware versions v1.2.4 and prior and TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command injection vulnerability. This vulnerability stems from inadequate input validation in the certificate management function, which could potentially allow malicious users to execute remote code on affected devices. | 
| Weaknesses | CWE-78 | 
Tue, 08 Oct 2024 18:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Moxa edr-810 Moxa edr-g9010 Moxa edr-g902 Moxa nat-102 | |
| CPEs | cpe:2.3:a:moxa:edr-g9010:*:*:*:*:*:*:*:* cpe:2.3:a:moxa:nat-102:*:*:*:*:*:*:*:* cpe:2.3:h:moxa:edr-810:-:*:*:*:*:*:*:* cpe:2.3:h:moxa:edr-g902:-:*:*:*:*:*:*:* | |
| Vendors & Products | Moxa edr-810 Moxa edr-g9010 Moxa edr-g902 Moxa nat-102 | |
| Metrics | ssvc 
 | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: Moxa
Published:
Updated: 2024-10-28T06:03:40.655Z
Reserved: 2023-05-19T02:30:16.483Z
Link: CVE-2023-33238
 Vulnrichment
                        Vulnrichment
                    Updated: 2024-08-02T15:39:35.932Z
 NVD
                        NVD
                    Status : Modified
Published: 2023-08-17T03:15:09.377
Modified: 2024-11-21T08:05:12.860
Link: CVE-2023-33238
 Redhat
                        Redhat
                    No data.