CVE-2021-38454
10.0
CRITICAL · CVSS 3.1 · EPSS 15.8% (pctl 97)
Patch early
EPSS 15.8% — above the 10% action threshold.
Description
A path traversal vulnerability in the Moxa MXview Network Management software Versions 3.x to 3.2.2 may allow an attacker to create or overwrite critical files used to execute code, such as programs or libraries.
Scoring
| CVSS | 10.0 (CRITICAL, v3.1) |
|---|---|
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H |
| EPSS | 15.79% — more likely to be exploited than 97% of all CVEs |
| Weakness | CWE-284 |
| On CISA KEV | no |
| Public exploit | none known |
| Published | 2021-10-12 |
| Last modified | 2026-06-17 |
Affected (1)
| Vendor | Product |
|---|---|
| moxa | mxview |
References
→ the Explorer · watch your stack · NVD