← All CVEs

CVE-2019-10969

high · 7.2

Moxa EDR 810, all versions 5.1 and prior, allows an authenticated attacker to abuse the ping feature to execute unauthorized commands on the router, which may allow an attacker to perform remote code execution.

7.2
CVSS
10.6%
EPSS (exploit prob.)
96th
EPSS percentile
2019-10-08
Published

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Weaknesses

CWE-20

Affected products

VendorProductAffected versions
moxaedr-810_firmware<= 5.1
moxaedr-810all versions

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2019-10969