Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered on MOXA EDS-G512E 5.1 build 16072215 devices. The password encryption method can be retrieved from the firmware. This encryption method is based on a chall value that is sent in cleartext as a POST parameter. An attacker could reverse the password encryption algorithm to retrieve it.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Moxa EDS-G512E 安全漏洞
Vulnerability Description
Moxa EDS-G512E是摩莎(Moxa)公司的一款以太网交换机设备。 Moxa EDS-G512E 5.1 build 16072215版本中存在安全漏洞,该漏洞源于加密方法是基于chall值,而程序以明文形式将chall值作为POST参数发送。攻击者可利用该漏洞从固件中检索密码加密方法。
CVSS Information
N/A
Vulnerability Type
N/A