TN-4900 Series firmware versions v1.2.4 and prior and TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command-injection vulnerability. This vulnerability stems from insufficient input validation in the certificate-generation function, which could potentially allow malicious users to execute remote code on affected devices.
References
Link | Resource |
---|---|
https://www.moxa.com/en/support/product-support/security-advisory/mpsa-230402-tn-5900-and-tn-4900-series-web-server-multiple-vulnerabilities | Patch Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: Moxa
Published: 2023-08-17T02:26:05.428Z
Updated: 2023-10-20T07:03:28.811Z
Reserved: 2023-05-31T08:58:06.149Z
Link: CVE-2023-34214
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-08-17T03:15:09.747
Modified: 2023-08-22T19:05:01.607
Link: CVE-2023-34214
JSON object: View
Redhat Information
No data.
CWE