Cisco Talos is disclosing TALOS-2017-0507 (CVE-17-14459), a vulnerability that has been identified in Moxa AWK-3131A industrial wireless access point. An attacker can inject commands via the username parameter, resulting in remote, unauthenticated, root-level operating system command execution. The vulnerability appears to be a result of code which creates a log of failed authentication attempts. The manufacturer has released an updated version of the firmware. Users are advised to download and install the latest release as soon as possible to fix this issue.”]
Source: https://blog.talosintelligence.com/2018/04/vulnerability-spotlight-moxa-awk-3131a.html

