Vulnerability Description
An issue was discovered in Moxa MXview v2.8 and prior. The unquoted service path escalation vulnerability could allow an authorized user with file access to escalate privileges by inserting arbitrary code into the unquoted service path.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Moxa | Mxview | <= 2.8 |
Related Weaknesses (CWE)
References
- http://www.securityfocus.com/bid/102494Third Party AdvisoryVDB Entry
- https://ics-cert.us-cert.gov/advisories/ICSA-18-011-02Third Party AdvisoryUS Government Resource
- http://www.securityfocus.com/bid/102494Third Party AdvisoryVDB Entry
- https://ics-cert.us-cert.gov/advisories/ICSA-18-011-02Third Party AdvisoryUS Government Resource
FAQ
What is CVE-2017-14030?
CVE-2017-14030 is a vulnerability with a CVSS score of 7.8 (HIGH). An issue was discovered in Moxa MXview v2.8 and prior. The unquoted service path escalation vulnerability could allow an authorized user with file access to escalate privileges by inserting arbitrary ...
How severe is CVE-2017-14030?
CVE-2017-14030 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-14030?
Check the references section above for vendor advisories and patch information. Affected products include: Moxa Mxview.