CVE-2016-2285
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Cross-site request forgery (CSRF) vulnerability on Moxa MiiNePort_E1_4641 devices with firmware 1.1.10 Build 09120714, MiiNePort_E1_7080 devices with firmware 1.1.10 Build 09120714, MiiNePort_E2_1242 devices with firmware 1.1 Build 10080614, MiiNePort_E2_4561 devices with firmware 1.1 Build 10080614, and MiiNePort E3 devices with firmware 1.0 Build 11071409 allows remote attackers to hijack the authentication of arbitrary users.
Vulnerabilidad de CSRF en dispositivos Moxa MiiNePort_E1_4641 con firmware 1.1.10 Build 09120714, dispositivos MiiNePort_E1_7080 con firmware 1.1.10 Build 09120714, dispositivos MiiNePort_E2_1242 con firmware 1.1 Build 10080614, dispositivos MiiNePort_E2_4561 con firmware 1.1 Build 10080614 y dispositivos MiiNePort E3 con firmware 1.0 Build 11071409 permite a atacantes remotos secuestrar la autenticación de usuarios arbitrarios.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2016-02-09 CVE Reserved
- 2016-05-03 CVE Published
- 2023-03-08 EPSS Updated
- 2024-08-05 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-352: Cross-Site Request Forgery (CSRF)
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
http://seclists.org/fulldisclosure/2016/May/7 | Mailing List | |
https://ics-cert.us-cert.gov/advisories/ICSA-16-145-01 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Moxa Search vendor "Moxa" | Miineport E2 1242 Firmware Search vendor "Moxa" for product "Miineport E2 1242 Firmware" | 1.1 Search vendor "Moxa" for product "Miineport E2 1242 Firmware" and version "1.1" | - |
Affected
| in | Moxa Search vendor "Moxa" | Miineport E2 1242 Search vendor "Moxa" for product "Miineport E2 1242" | - | - |
Safe
|
Moxa Search vendor "Moxa" | Miineport E2 4561 Firmware Search vendor "Moxa" for product "Miineport E2 4561 Firmware" | 1.1 Search vendor "Moxa" for product "Miineport E2 4561 Firmware" and version "1.1" | - |
Affected
| in | Moxa Search vendor "Moxa" | Miineport E2 4561 Search vendor "Moxa" for product "Miineport E2 4561" | - | - |
Safe
|
Moxa Search vendor "Moxa" | Miineport E1 7080 Firmware Search vendor "Moxa" for product "Miineport E1 7080 Firmware" | 1.1.10 Search vendor "Moxa" for product "Miineport E1 7080 Firmware" and version "1.1.10" | - |
Affected
| in | Moxa Search vendor "Moxa" | Miineport E1 7080 Search vendor "Moxa" for product "Miineport E1 7080" | - | - |
Safe
|
Moxa Search vendor "Moxa" | Miineport E3 Firmware Search vendor "Moxa" for product "Miineport E3 Firmware" | 1.0 Search vendor "Moxa" for product "Miineport E3 Firmware" and version "1.0" | - |
Affected
| in | Moxa Search vendor "Moxa" | Miineport E3 Search vendor "Moxa" for product "Miineport E3" | - | - |
Safe
|
Moxa Search vendor "Moxa" | Miineport E1 4641 Firmware Search vendor "Moxa" for product "Miineport E1 4641 Firmware" | 1.1.10 Search vendor "Moxa" for product "Miineport E1 4641 Firmware" and version "1.1.10" | - |
Affected
| in | Moxa Search vendor "Moxa" | Miineport E1 4641 Search vendor "Moxa" for product "Miineport E1 4641" | - | - |
Safe
|