HIGH · 7.5

CVE-2017-16715

An Information Exposure issue was discovered in Moxa NPort 5110 Version 2.2, NPort 5110 Version 2.4, NPort 5110 Version 2.6, NPort 5110 Version 2.7, NPort 5130 Version 3.7 and prior, and NPort 5150 Ve...

Vulnerability Description

An Information Exposure issue was discovered in Moxa NPort 5110 Version 2.2, NPort 5110 Version 2.4, NPort 5110 Version 2.6, NPort 5110 Version 2.7, NPort 5130 Version 3.7 and prior, and NPort 5150 Version 3.7 and prior. An attacker may be able to exploit a flaw in the handling of Ethernet frame padding that may allow for information exposure.

CVSS Score

7.5

HIGH

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
MoxaNport 5110 Firmware2.2
MoxaNport 5110-
MoxaNport 5130 Firmware<= 3.7
MoxaNport 5130-
MoxaNport 5150 Firmware<= 3.7
MoxaNport 5150-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2017-16715?

CVE-2017-16715 is a vulnerability with a CVSS score of 7.5 (HIGH). An Information Exposure issue was discovered in Moxa NPort 5110 Version 2.2, NPort 5110 Version 2.4, NPort 5110 Version 2.6, NPort 5110 Version 2.7, NPort 5130 Version 3.7 and prior, and NPort 5150 Ve...

How severe is CVE-2017-16715?

CVE-2017-16715 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2017-16715?

Check the references section above for vendor advisories and patch information. Affected products include: Moxa Nport 5110 Firmware, Moxa Nport 5110, Moxa Nport 5130 Firmware, Moxa Nport 5130, Moxa Nport 5150 Firmware.