peter bassill · operator
$ cve CVE-2019-6557 JSON

CVE-2019-6557

9.8
CRITICAL · CVSS 3.1 · EPSS 5% (pctl 92)

In your normal cycle

Critical by CVSS (9.8), but no sign of active exploitation.

Description

Several buffer overflow vulnerabilities have been identified in Moxa IKS and EDS, which may allow remote code execution.

Scoring

CVSS9.8 (CRITICAL, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS5.01% — more likely to be exploited than 92% of all CVEs
WeaknessCWE-120
On CISA KEVno
Public exploitnone known
Published2019-03-05
Last modified2026-06-17

Affected (8)

VendorProduct
moxaeds-405a
moxaeds-405a firmware
moxaeds-408a
moxaeds-408a firmware
moxaeds-510a
moxaeds-510a firmware
moxaiks-g6824a
moxaiks-g6824a firmware

References

→ the Explorer  ·  watch your stack  ·  NVD