peter bassill · operator
$ cve CVE-2016-5799 JSON

CVE-2016-5799

9.8
CRITICAL · CVSS 3.0 · EPSS 4% (pctl 90)

In your normal cycle

Critical by CVSS (9.8), but no sign of active exploitation.

Description

Moxa OnCell G3100V2 devices before 2.8 and G3111, G3151, G3211, and G3251 devices before 1.7 do not properly restrict authentication attempts, which makes it easier for remote attackers to obtain access via a brute-force attack.

Scoring

CVSS9.8 (CRITICAL, v3.0)
VectorCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS4% — more likely to be exploited than 90% of all CVEs
WeaknessCWE-285
On CISA KEVno
Public exploitnone known
Published2016-08-24
Last modified2026-06-17

Affected (7)

VendorProduct
moxaoncell g3001 firmware
moxaoncell g3100v2
moxaoncell g3100v2 firmware
moxaoncell g3111
moxaoncell g3151
moxaoncell g3211
moxaoncell g3251

References

→ the Explorer  ·  watch your stack  ·  NVD