← Voltar para CVEs
CVE-2018-11427
N/ADescricao
CSRF tokens are not used in the web application of Moxa OnCell G3100-HSPA Series version 1.4 Build 16062919 and prior, which makes it possible to perform CSRF attacks on the device administrator.
Detalhes CVE
Pontuacao CVSS v3.1N/A
Publicado7/3/2019
Ultima modificacao11/21/2024
Fontenvd
Avistamentos honeypot0
Produtos afetados
moxa:oncell_g3150-hspamoxa:oncell_g3150-hspa-tmoxa:oncell_g3150-hspa-t_firmwaremoxa:oncell_g3150-hspa_firmware
Fraquezas (CWE)
CWE-352
Referencias
https://github.com/klsecservices/Advisories/blob/master/KL-MOXA-2018-106.md(af854a3a-2127-422b-91ae-364da2661108)
Correlacoes IOC
Sem correlacoes registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.