MEDIUM · 4.3

CVE-2019-10963

Moxa EDR 810, all versions 5.1 and prior, allows an unauthenticated attacker to be able to retrieve some log files from the device, which may allow sensitive information disclosure. Log files must hav...

Vulnerability Description

Moxa EDR 810, all versions 5.1 and prior, allows an unauthenticated attacker to be able to retrieve some log files from the device, which may allow sensitive information disclosure. Log files must have previously been exported by a legitimate user.

CVSS Score

4.3

MEDIUM

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality
LOW
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
MoxaEdr-810 Firmware<= 5.1
MoxaEdr-810-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2019-10963?

CVE-2019-10963 is a vulnerability with a CVSS score of 4.3 (MEDIUM). Moxa EDR 810, all versions 5.1 and prior, allows an unauthenticated attacker to be able to retrieve some log files from the device, which may allow sensitive information disclosure. Log files must hav...

How severe is CVE-2019-10963?

CVE-2019-10963 has been rated MEDIUM with a CVSS base score of 4.3/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2019-10963?

Check the references section above for vendor advisories and patch information. Affected products include: Moxa Edr-810 Firmware, Moxa Edr-810.