peter bassill · operator
$ cve CVE-2021-38454 JSON

CVE-2021-38454

10.0
CRITICAL · CVSS 3.1 · EPSS 15.8% (pctl 97)

Patch early

EPSS 15.8% — above the 10% action threshold.

Description

A path traversal vulnerability in the Moxa MXview Network Management software Versions 3.x to 3.2.2 may allow an attacker to create or overwrite critical files used to execute code, such as programs or libraries.

Scoring

CVSS10.0 (CRITICAL, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
EPSS15.79% — more likely to be exploited than 97% of all CVEs
WeaknessCWE-284
On CISA KEVno
Public exploitnone known
Published2021-10-12
Last modified2026-06-17

Affected (1)

VendorProduct
moxamxview

References

→ the Explorer  ·  watch your stack  ·  NVD