CVE-2024-12297 - Moxa EDS-508A Series Authentication Bypass Vulnerability

CVE ID : CVE-2024-12297 Published : Jan. 15, 2025, 10:15 a.m. | 1 hour, 30 minutes ago Description : Moxa’s Ethernet switch EDS-508A Series, running firmware version 3.11 and earlier, is vulnerable to an authentication bypass because of flaws in its authorization mechanism. Although both client-side and back-end server verification are involved in the process, attackers can exploit weaknesses in its implementation. These vulnerabilities may enable brute-force attacks to guess valid credentials or MD5 collision attacks to forge authentication hashes, potentially compromising the security of the device. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

Jan 15, 2025 - 12:46
 0  1
CVE-2024-12297 - Moxa EDS-508A Series Authentication Bypass Vulnerability
CVE ID : CVE-2024-12297
Published : Jan. 15, 2025, 10:15 a.m. | 1 hour, 30 minutes ago
Description : Moxa’s Ethernet switch EDS-508A Series, running firmware version 3.11 and earlier, is vulnerable to an authentication bypass because of flaws in its authorization mechanism. Although both client-side and back-end server verification are involved in the process, attackers can exploit weaknesses in its implementation. These vulnerabilities may enable brute-force attacks to guess valid credentials or MD5 collision attacks to forge authentication hashes, potentially compromising the security of the device.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...