Get a Pentest and security assessment of your IT network.

News

Vulnerability Spotlight: Moxa AWK-3131A Multiple Features Login Username Parameter OS Command Injection Vulnerability

Cisco Talos is disclosing TALOS-2017-0507 (CVE-17-14459), a vulnerability that has been identified in Moxa AWK-3131A industrial wireless access point. An attacker can inject commands via the username parameter, resulting in remote, unauthenticated, root-level operating system command execution. The vulnerability appears to be a result of code which creates a log of failed authentication attempts. The manufacturer has released an updated version of the firmware. Users are advised to download and install the latest release as soon as possible to fix this issue.”]

Source: https://blog.talosintelligence.com/2018/04/vulnerability-spotlight-moxa-awk-3131a.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

BlackEnergy exploits recently fixed flaws in Siemens WinCC

News

Google Chrome will block code injection from third-party software within 14 months