OnCell G3470A-LTE Series firmware versions v1.7.7 and prior have been identified as vulnerable due to a lack of neutralized inputs in the web key upload function. An attacker could modify the intended commands sent to target functions, which could cause malicious users to execute unauthorized commands.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:NMoxa Oncell G3470a Lte Eu
HWMoxaall versionsMoxa Oncell G3470a Lte Eu Firmware
OSMoxa≤ 1.7.7Moxa Oncell G3470a Lte Eu T
HWMoxaall versionsMoxa Oncell G3470a Lte Eu T Firmware
OSMoxa≤ 1.7.7Moxa Oncell G3470a Lte Us
HWMoxaall versionsMoxa Oncell G3470a Lte Us Firmware
OSMoxa≤ 1.7.7Moxa Oncell G3470a Lte Us T
HWMoxaall versionsMoxa Oncell G3470a Lte Us T Firmware
OSMoxa≤ 1.7.7
Related vulnerabilities
Uszkodzenie pamięci w Moxa OnCell G3470A-LTE — RCE bez uwierzytelnienia
OnCell G3470A-LTE Series firmware versions v1.7.7 and prior have been identified as vulnerable due to a lack o...
OnCell G3470A-LTE Series firmware versions v1.7.7 and prior have been identified as vulnerable due to missing ...
Certain MOXA devices allow Authenticated Command Injection via /forms/web_importTFTP. This affects WAC-2004 1....
There is Memory corruption in the web interface of Moxa OnCell G3470A-LTE Series version 1.6 Build 18021314 an...