// For flags

CVE-2021-25848

 

Severity Score

9.1
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Improper validation of the length field of LLDP-MED TLV in userdisk/vport_lldpd in Moxa Camera VPort 06EC-2V Series, version 1.1, allows information disclosure to attackers due to using fixed loop counter variable without checking the actual available length via a crafted lldp packet.

Una comprobación inapropiada del campo de longitud de LLDP-MED TLV en el archivo userdisk/vport_lldpd en Moxa Camera VPort 06EC-2V Series, versión 1.1, permite una divulgación de información a los atacantes debido al uso de la variable de contador de bucle fijo sin comprobar la longitud real disponible por medio de un paquete lldp diseñado

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
None
Availability
High
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
Partial
Integrity
None
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2021-01-22 CVE Reserved
  • 2021-05-10 CVE Published
  • 2024-01-24 EPSS Updated
  • 2024-08-03 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-125: Out-of-bounds Read
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Moxa
Search vendor "Moxa"
Vport 06ec-2v26m Firmware
Search vendor "Moxa" for product "Vport 06ec-2v26m Firmware"
<= 1.1
Search vendor "Moxa" for product "Vport 06ec-2v26m Firmware" and version " <= 1.1"
-
Affected
in Moxa
Search vendor "Moxa"
Vport 06ec-2v26m
Search vendor "Moxa" for product "Vport 06ec-2v26m"
--
Safe
Moxa
Search vendor "Moxa"
Vport 06ec-2v36m-t Firmware
Search vendor "Moxa" for product "Vport 06ec-2v36m-t Firmware"
<= 1.1
Search vendor "Moxa" for product "Vport 06ec-2v36m-t Firmware" and version " <= 1.1"
-
Affected
in Moxa
Search vendor "Moxa"
Vport 06ec-2v36m-t
Search vendor "Moxa" for product "Vport 06ec-2v36m-t"
--
Safe
Moxa
Search vendor "Moxa"
Vport 06ec-2v36m-ct Firmware
Search vendor "Moxa" for product "Vport 06ec-2v36m-ct Firmware"
<= 1.1
Search vendor "Moxa" for product "Vport 06ec-2v36m-ct Firmware" and version " <= 1.1"
-
Affected
in Moxa
Search vendor "Moxa"
Vport 06ec-2v36m-ct
Search vendor "Moxa" for product "Vport 06ec-2v36m-ct"
--
Safe
Moxa
Search vendor "Moxa"
Vport 06ec-2v36m-ct-t Firmware
Search vendor "Moxa" for product "Vport 06ec-2v36m-ct-t Firmware"
<= 1.1
Search vendor "Moxa" for product "Vport 06ec-2v36m-ct-t Firmware" and version " <= 1.1"
-
Affected
in Moxa
Search vendor "Moxa"
Vport 06ec-2v36m-ct-t
Search vendor "Moxa" for product "Vport 06ec-2v36m-ct-t"
--
Safe
Moxa
Search vendor "Moxa"
Vport 06ec-2v42m Firmware
Search vendor "Moxa" for product "Vport 06ec-2v42m Firmware"
<= 1.1
Search vendor "Moxa" for product "Vport 06ec-2v42m Firmware" and version " <= 1.1"
-
Affected
in Moxa
Search vendor "Moxa"
Vport 06ec-2v42m
Search vendor "Moxa" for product "Vport 06ec-2v42m"
--
Safe
Moxa
Search vendor "Moxa"
Vport 06ec-2v42m-t Firmware
Search vendor "Moxa" for product "Vport 06ec-2v42m-t Firmware"
<= 1.1
Search vendor "Moxa" for product "Vport 06ec-2v42m-t Firmware" and version " <= 1.1"
-
Affected
in Moxa
Search vendor "Moxa"
Vport 06ec-2v42m-t
Search vendor "Moxa" for product "Vport 06ec-2v42m-t"
--
Safe
Moxa
Search vendor "Moxa"
Vport 06ec-2v42m-ct Firmware
Search vendor "Moxa" for product "Vport 06ec-2v42m-ct Firmware"
<= 1.1
Search vendor "Moxa" for product "Vport 06ec-2v42m-ct Firmware" and version " <= 1.1"
-
Affected
in Moxa
Search vendor "Moxa"
Vport 06ec-2v42m-ct
Search vendor "Moxa" for product "Vport 06ec-2v42m-ct"
--
Safe
Moxa
Search vendor "Moxa"
Vport 06ec-2v42m-ct-t Firmware
Search vendor "Moxa" for product "Vport 06ec-2v42m-ct-t Firmware"
<= 1.1
Search vendor "Moxa" for product "Vport 06ec-2v42m-ct-t Firmware" and version " <= 1.1"
-
Affected
in Moxa
Search vendor "Moxa"
Vport 06ec-2v42m-ct-t
Search vendor "Moxa" for product "Vport 06ec-2v42m-ct-t"
--
Safe
Moxa
Search vendor "Moxa"
Vport 06ec-2v60m Firmware
Search vendor "Moxa" for product "Vport 06ec-2v60m Firmware"
<= 1.1
Search vendor "Moxa" for product "Vport 06ec-2v60m Firmware" and version " <= 1.1"
-
Affected
in Moxa
Search vendor "Moxa"
Vport 06ec-2v60m
Search vendor "Moxa" for product "Vport 06ec-2v60m"
--
Safe
Moxa
Search vendor "Moxa"
Vport 06ec-2v60m-t Firmware
Search vendor "Moxa" for product "Vport 06ec-2v60m-t Firmware"
<= 1.1
Search vendor "Moxa" for product "Vport 06ec-2v60m-t Firmware" and version " <= 1.1"
-
Affected
in Moxa
Search vendor "Moxa"
Vport 06ec-2v60m-t
Search vendor "Moxa" for product "Vport 06ec-2v60m-t"
--
Safe
Moxa
Search vendor "Moxa"
Vport 06ec-2v60m-ct Firmware
Search vendor "Moxa" for product "Vport 06ec-2v60m-ct Firmware"
<= 1.1
Search vendor "Moxa" for product "Vport 06ec-2v60m-ct Firmware" and version " <= 1.1"
-
Affected
in Moxa
Search vendor "Moxa"
Vport 06ec-2v60m-ct
Search vendor "Moxa" for product "Vport 06ec-2v60m-ct"
--
Safe
Moxa
Search vendor "Moxa"
Vport 06ec-2v60m-ct-t Firmware
Search vendor "Moxa" for product "Vport 06ec-2v60m-ct-t Firmware"
<= 1.1
Search vendor "Moxa" for product "Vport 06ec-2v60m-ct-t Firmware" and version " <= 1.1"
-
Affected
in Moxa
Search vendor "Moxa"
Vport 06ec-2v60m-ct-t
Search vendor "Moxa" for product "Vport 06ec-2v60m-ct-t"
--
Safe
Moxa
Search vendor "Moxa"
Vport 06ec-2v80m Firmware
Search vendor "Moxa" for product "Vport 06ec-2v80m Firmware"
<= 1.1
Search vendor "Moxa" for product "Vport 06ec-2v80m Firmware" and version " <= 1.1"
-
Affected
in Moxa
Search vendor "Moxa"
Vport 06ec-2v80m
Search vendor "Moxa" for product "Vport 06ec-2v80m"
--
Safe
Moxa
Search vendor "Moxa"
Vport 06ec-2v80m-t Firmware
Search vendor "Moxa" for product "Vport 06ec-2v80m-t Firmware"
<= 1.1
Search vendor "Moxa" for product "Vport 06ec-2v80m-t Firmware" and version " <= 1.1"
-
Affected
in Moxa
Search vendor "Moxa"
Vport 06ec-2v80m-t
Search vendor "Moxa" for product "Vport 06ec-2v80m-t"
--
Safe
Moxa
Search vendor "Moxa"
Vport 06ec-2v80m-ct Firmware
Search vendor "Moxa" for product "Vport 06ec-2v80m-ct Firmware"
<= 1.1
Search vendor "Moxa" for product "Vport 06ec-2v80m-ct Firmware" and version " <= 1.1"
-
Affected
in Moxa
Search vendor "Moxa"
Vport 06ec-2v80m-ct
Search vendor "Moxa" for product "Vport 06ec-2v80m-ct"
--
Safe
Moxa
Search vendor "Moxa"
Vport 06ec-2v80m-ct-t Firmware
Search vendor "Moxa" for product "Vport 06ec-2v80m-ct-t Firmware"
<= 1.1
Search vendor "Moxa" for product "Vport 06ec-2v80m-ct-t Firmware" and version " <= 1.1"
-
Affected
in Moxa
Search vendor "Moxa"
Vport 06ec-2v80m-ct-t
Search vendor "Moxa" for product "Vport 06ec-2v80m-ct-t"
--
Safe