Moxa IKS and EDS fails to properly check array bounds which may allow an attacker to read device memory on arbitrary addresses, and may allow an attacker to retrieve sensitive data or cause device reboot.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/107178 | Third Party Advisory VDB Entry |
https://ics-cert.us-cert.gov/advisories/ICSA-19-057-01 | US Government Resource Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: icscert
Published: 2019-03-05T00:00:00
Updated: 2019-03-06T10:57:01
Reserved: 2019-01-22T00:00:00
Link: CVE-2019-6522
JSON object: View
NVD Information
Status : Analyzed
Published: 2019-03-05T20:29:00.343
Modified: 2022-11-30T22:21:05.317
Link: CVE-2019-6522
JSON object: View
Redhat Information
No data.
CWE