
CVE-2016-5819
https://notcve.org/view.php?id=CVE-2016-5819
21 Mar 2019 — Moxa G3100V2 Series, editions prior to Version 2.8, and OnCell G3111/G3151/G3211/G3251 Series, editions prior to Version 1.7 allows a reflected cross-site scripting attack which may allow an attacker to execute arbitrary script code in the user’s browser within the trust relationship between their browser and the server. Las series Moxa G3100V2, ediciones anteriores a la Versión 2.8, y OnCell G3111 / G3151 / G3211 / G3251 Series, ediciones anteriores a la Versión 1.7 permiten un ataque de secuencias de coma... • https://ics-cert.us-cert.gov/advisories/ICSA-16-236-01 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVE-2016-5812
https://notcve.org/view.php?id=CVE-2016-5812
24 Aug 2016 — Moxa OnCell G3100V2 devices before 2.8 and G3111, G3151, G3211, and G3251 devices before 1.7 use cleartext password storage, which makes it easier for local users to obtain sensitive information by reading a configuration file. Dispositivos Moxa OnCell G3100V2 en versiones anteriores a 2.8 y dispositivos G3111, G3151, G3211 y G3251 en versiones anteriores a 1.7 utilizan un almacenamiento de contraseñas de texto sin cifrar, lo que facilita a usuarios locales obtener información sensible leyendo un archivo de... • http://www.securityfocus.com/bid/92605 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2016-5799
https://notcve.org/view.php?id=CVE-2016-5799
24 Aug 2016 — Moxa OnCell G3100V2 devices before 2.8 and G3111, G3151, G3211, and G3251 devices before 1.7 do not properly restrict authentication attempts, which makes it easier for remote attackers to obtain access via a brute-force attack. Dispositivos Moxa OnCell G3100V2 en versiones anteriores a 2.8 y dispositivos G3111, G3151, G3211 y G3251 en versiones anteriores a 1.7 no restringen adecuadamente intentos de autenticación, lo que facilita a atacantes remotos obtener acceso a través de un ataque de fuerza bruta. • http://www.securityfocus.com/bid/92606 • CWE-285: Improper Authorization •

CVE-2012-3039
https://notcve.org/view.php?id=CVE-2012-3039
09 Aug 2013 — Moxa OnCell Gateway G3111, G3151, G3211, and G3251 devices with firmware before 1.4 do not use a sufficient source of entropy for SSH and SSL keys, which makes it easier for remote attackers to obtain access by leveraging knowledge of a key from a product installation elsewhere. Los dispositivos Moxa OnCell Gateway G3111, G3151, G3211, y G3251 con firmware anterior a v1.4 no utiliza una fuente de suficiente entropía para SSH y claves SSL, lo que hace más fácil para los atacantes remotos obtener acceso media... • http://ics-cert.us-cert.gov/advisories/ICSA-13-217-01 • CWE-310: Cryptographic Issues •