TN-5900 Series firmware version v3.3 and prior is vulnerable to improper-authentication vulnerability. This vulnerability arises from inadequate authentication measures implemented in the web API handler, allowing low-privileged APIs to execute restricted actions that only high-privileged APIs are allowed This presents a potential risk of unauthorized exploitation by malicious actors.
References
Link | Resource |
---|---|
https://www.moxa.com/en/support/product-support/security-advisory/mpsa-230402-tn-5900-and-tn-4900-series-web-server-multiple-vulnerabilities | Patch Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: Moxa
Published: 2023-08-17T01:50:53.625Z
Updated: 2023-08-17T01:50:53.625Z
Reserved: 2023-05-19T02:30:16.483Z
Link: CVE-2023-33237
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-08-17T02:15:41.177
Modified: 2023-08-22T19:10:04.453
Link: CVE-2023-33237
JSON object: View
Redhat Information
No data.
CWE