Talos responsibly disclosed a set of vulnerabilities in Moxa ICS wireless access points earlier this month. Talos is disclosing the TALOS-2016-0231, a hard-coded credential vulnerability that could allow an attacker to gain complete control of the device. The vulnerability was identified by Patrick DeSantis of Talos. It is recommended that you disable remotely-accessible services, such as SSH and Telnet. Administrators should be aware that these rules are subject to change pending new or additional information regarding this vulnerabilities.”]
Source: https://blog.talosintelligence.com/2017/04/moxa-hardcoded-creds.html

