peter bassill · operator
$ cve CVE-2019-10963 JSON

CVE-2019-10963 EXPLOIT

4.3
MEDIUM · CVSS 3.1 · EPSS 6.5% (pctl 94)

Patch early

A public exploit exists.

Description

Moxa EDR 810, all versions 5.1 and prior, allows an unauthenticated attacker to be able to retrieve some log files from the device, which may allow sensitive information disclosure. Log files must have previously been exported by a legitimate user.

Scoring

CVSS4.3 (MEDIUM, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
EPSS6.5% — more likely to be exploited than 94% of all CVEs
WeaknessCWE-321
On CISA KEVno
Public exploityes
Published2019-10-08
Last modified2026-06-17

Affected (2)

VendorProduct
moxaedr-810
moxaedr-810 firmware

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD