← back
CVE-2021-38458criticalCWE-74

Moxa MXview Network Management Software

28Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 9.8epss 1.8%
exploitation probability
1.8%top 23% of all CVEs
observed exploitation
nono source reports it
In short

MXview allows an attacker to create or overwrite important system files by using specially crafted file paths, potentially letting them run malicious code on the affected computer.

Technical detail

Path traversal vulnerability in Moxa MXview 3.x–3.2.2 enables an unauthenticated or low-privileged attacker to write arbitrary files to critical directories, leading to arbitrary code execution through overwriting executable programs or libraries.

Summary generated and translated by AI from the official description.
A path traversal vulnerability in the Moxa MXview Network Management software Versions 3.x to 3.2.2 may allow an attacker to create or overwrite critical files used to execute code, such as programs or libraries.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H