CVE-2017-16715 Information

Description

An Information Exposure issue was discovered in Moxa NPort 5110 Version 2.2 NPort 5110 Version 2.4 NPort 5110 Version 2.6 NPort 5110 Version 2.7 NPort 5130 Version 3.7 and prior and NPort 5150 Version 3.7 and prior. An attacker may be able to exploit a flaw in the handling of Ethernet frame padding that may allow for information exposure.

CVSS Vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Reference

http://www.securityfocus.com/bid/101885 https://ics-cert.us-cert.gov/advisories/ICSA-17-320-01

Attack Complexity

LOW

Privileges Required

NONE

User Interaction Required

NONE

Scope

NONE

Confidentiality Impact

UNCHANGED

Integrity Impact

HIGH

Availability Impact

NONE

Base Score

NONE

Base Severity

7.5

Share on: