CVE-2016-5799
9.8
CRITICAL · CVSS 3.0 · EPSS 4% (pctl 90)
In your normal cycle
Critical by CVSS (9.8), but no sign of active exploitation.
Description
Moxa OnCell G3100V2 devices before 2.8 and G3111, G3151, G3211, and G3251 devices before 1.7 do not properly restrict authentication attempts, which makes it easier for remote attackers to obtain access via a brute-force attack.
Scoring
| CVSS | 9.8 (CRITICAL, v3.0) |
|---|---|
| Vector | CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 4% — more likely to be exploited than 90% of all CVEs |
| Weakness | CWE-285 |
| On CISA KEV | no |
| Public exploit | none known |
| Published | 2016-08-24 |
| Last modified | 2026-06-17 |
Affected (7)
| Vendor | Product |
|---|---|
| moxa | oncell g3001 firmware |
| moxa | oncell g3100v2 |
| moxa | oncell g3100v2 firmware |
| moxa | oncell g3111 |
| moxa | oncell g3151 |
| moxa | oncell g3211 |
| moxa | oncell g3251 |
References
→ the Explorer · watch your stack · NVD