CVE-2021-32976
01.04.2022, 23:15
Five buffer overflows in the built-in web server in Moxa NPort IAW5000A-I/O series firmware version 2.2 or earlier may allow a remote attacker to initiate a denial-of-service attack and execute arbitrary code.Enginsight
Vendor | Product | Version |
---|---|---|
moxa | nport_iaw5150a-6i\/o_firmware | 𝑥 ≤ 2.2 |
moxa | nport_iaw5150a-12i\/o_firmware | 𝑥 ≤ 2.2 |
moxa | nport_iaw5250a-6i\/o_firmware | 𝑥 ≤ 2.2 |
moxa | nport_iaw5250a-12i\/o_firmware | 𝑥 ≤ 2.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-121 - Stack-based Buffer OverflowA stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function).
- CWE-787 - Out-of-bounds WriteThe software writes data past the end, or before the beginning, of the intended buffer.
References