Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Moxa — Vulnerabilities & Security Advisories 129

Browse all 129 CVE security advisories affecting Moxa. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Moxa specializes in industrial networking hardware, providing ruggedized switches, routers, and IoT gateways designed for harsh environments like manufacturing and transportation. The company’s product portfolio has accumulated 123 recorded Common Vulnerabilities and Exposures, reflecting the complexity of embedded systems in critical infrastructure. Historically, these security flaws predominantly involve remote code execution, buffer overflows, and improper access control mechanisms, which often allow attackers to gain unauthorized administrative privileges or disrupt network connectivity. While specific high-profile breaches directly attributed to Moxa hardware are less publicized compared to consumer electronics, the sheer volume of CVEs highlights persistent challenges in securing legacy industrial protocols and firmware updates. This pattern underscores the broader industry struggle to maintain robust cybersecurity hygiene in operational technology environments where stability often takes precedence over rapid patching cycles.

CVE ID Title CVSS Severity Published
CVE-2023-4229 ioLogik 4000 Series: Session Headers Not Implemented — ioLogik 4000 Series CWE-1021 4.3 Medium 2023-08-24
CVE-2023-4228 ioLogik 4000 Series: Session Cookies Attribute Not Set Properly — ioLogik 4000 Series CWE-1004 3.1 Low 2023-08-24
CVE-2023-4227 ioLogik 4000 Series: Existence of an Unauthorized Service — ioLogik 4000 Series CWE-489 5.3 Medium 2023-08-24
CVE-2023-34217 Second Order Command-injection Vulnerability in the Certificate-delete Function — TN-5900 Series CWE-22 8.1 High 2023-08-17
CVE-2023-34216 Second Order Command-injection Vulnerability in the Key-delete Function — TN-5900 Series CWE-22 8.1 High 2023-08-17
CVE-2023-34215 Second Order Command-injection Vulnerability in the Certificate-generation Function — TN-5900 Series CWE-78 7.2 High 2023-08-17
CVE-2023-34214 Second Order Command-injection Vulnerability in the Certificate-generation Function — TN-5900 Series CWE-78 7.2 High 2023-08-17
CVE-2023-34213 Second Order Command-injection Vulnerability in the Key-generation Function — TN-5900 Series CWE-78 8.8 High 2023-08-17
CVE-2023-33239 Second Order Command-injection Vulnerability in the Key-generation Function — TN-5900 Series CWE-78 8.8 High 2023-08-17
CVE-2023-33238 Command-injection Vulnerability in Certificate Management — TN-5900 Series CWE-78 7.2 High 2023-08-17
CVE-2023-33237 Authentication Bypass Without Administrator Privilege — TN-5900 Series CWE-863 8.8 High 2023-08-17
CVE-2023-4204 NPort IAW5000A-I/O Series Hardcoded Credential Vulnerability — NPort IAW5000A-I/O Series CWE-798 5.4 Medium 2023-08-16
CVE-2023-3336 TN-5900 Series User Enumeration Vulnerability — TN-5900 Series CWE-204 5.3 Medium 2023-07-05
CVE-2023-33236 MXsecurity Hardcoded Credential Vulnerability — MXsecurity Series CWE-798 9.8 Critical 2023-05-22
CVE-2023-33235 MXsecurity Command Injection Vulnerability — MXsecurity Series CWE-77 7.2 High 2023-05-22
CVE-2023-28697 Moxa MiiNePort E1 - Broken Access Control — MiiNePort E1 CWE-306 9.8 Critical 2023-04-27
CVE-2023-1257 CVE-2023-1257 — UC-8580 Series 7.6 High 2023-03-07
CVE-2022-40224 Moxa SDS-3008 安全漏洞 — SDS-3008 Series Industrial Ethernet Switch CWE-410 7.5 - 2023-02-07
CVE-2022-40693 MOXA SDS-3008 安全漏洞 — SDS-3008 Series Industrial Ethernet Switch CWE-319 7.5 - 2023-02-07
CVE-2022-40691 MOXA SDS-3008 安全漏洞 — SDS-3008 Series Industrial Ethernet Switch CWE-200 7.5 - 2023-02-07
CVE-2022-41311 MOXA SDS-3008 跨站脚本漏洞 — SDS-3008 Series Industrial Ethernet Switch CWE-79 5.4 - 2023-02-07
CVE-2022-41312 MOXA SDS-3008 跨站脚本漏洞 — SDS-3008 Series Industrial Ethernet Switch CWE-79 5.4 - 2023-02-07
CVE-2022-41313 MOXA SDS-3008 跨站脚本漏洞 — SDS-3008 Series Industrial Ethernet Switch CWE-79 5.4 - 2023-02-07
CVE-2022-3088 MOXA ARM-Based Computers 安全漏洞 — UC-8100A-ME-T System Imaage CWE-250 7.8 High 2022-11-22
CVE-2022-2043 MOXA NPort 5110 Out-of-bounds Write — MOXA CWE-787 7.5 High 2022-08-31
CVE-2022-2044 MOXA NPort 5110 Out-of-bounds Write — MOXA CWE-787 8.2 High 2022-08-31
CVE-2021-40392 MOXA Moxa MXView 安全漏洞 — MXView Series CWE-319 7.5 - 2022-04-14
CVE-2021-40390 MOXA Moxa MXView 信任管理问题漏洞 — MXView Series CWE-798 9.8 - 2022-04-14
CVE-2021-32976 Moxa NPort IAW5000A-I/O Series Serial Device Server Stack-based Buffer Overflow — NPort IAW5000A-I/O series firmware CWE-121 9.8 Critical 2022-04-01
CVE-2021-32970 Moxa NPort IAW5000A-I/O Series Serial Device Server Improper Input Validation — NPort IAW5000A-I/O series firmware CWE-20 7.5 High 2022-04-01

This page lists every published CVE security advisory associated with Moxa. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.