TN-4900 Series firmware versions v1.2.4 and prior and TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command injection vulnerability. This vulnerability stems from insufficient input validation in the key-generation function, which could potentially allow malicious users to execute remote code on affected devices.
                
            Metrics
Affected Vendors & Products
References
        History
                    Mon, 28 Oct 2024 06:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | TN-4900 Series firmware versions v1.2.4 and prior and TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command injection vulnerability. This vulnerability stems from insufficient input validation in the key-generation function, which could potentially allow malicious users to execute remote code on affected devices. | TN-4900 Series firmware versions v1.2.4 and prior and TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command injection vulnerability. This vulnerability stems from insufficient input validation in the key-generation function, which could potentially allow malicious users to execute remote code on affected devices. | 
| Weaknesses | CWE-78 | 
Tue, 08 Oct 2024 18:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Moxa edr-810 Moxa edr-g9010 Moxa edr-g902 Moxa edr-g903 Moxa nat-102 | |
| CPEs | cpe:2.3:a:moxa:edr-g9010:*:*:*:*:*:*:*:* cpe:2.3:a:moxa:nat-102:*:*:*:*:*:*:*:* cpe:2.3:h:moxa:edr-810:-:*:*:*:*:*:*:* cpe:2.3:h:moxa:edr-g902:-:*:*:*:*:*:*:* cpe:2.3:h:moxa:edr-g903:-:*:*:*:*:*:*:* | |
| Vendors & Products | Moxa edr-810 Moxa edr-g9010 Moxa edr-g902 Moxa edr-g903 Moxa nat-102 | |
| Metrics | ssvc 
 | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: Moxa
Published:
Updated: 2024-10-28T06:04:52.923Z
Reserved: 2023-05-19T02:30:16.483Z
Link: CVE-2023-33239
 Vulnrichment
                        Vulnrichment
                    Updated: 2024-08-02T15:39:35.750Z
 NVD
                        NVD
                    Status : Modified
Published: 2023-08-17T03:15:09.580
Modified: 2024-11-21T08:05:13.020
Link: CVE-2023-33239
 Redhat
                        Redhat
                    No data.