← Back to home
ICSA-21-357-01  ·  Published 2021-12-23  ·  View on CISA ICS-CERT ↗

Moxa MGate Protocol Gateways

CVSS 9.8 CRITICAL

Risk Summary

Successful exploitation of this vulnerability could allow remote attackers to obtain sensitive information.

CVEs (1)

Remediations

  • Enable 'HTTPS' and disable the HTTP console function under 'Console Settings'
  • Moxa also recommends users refer to Tech Note: Moxa Security Hardening Guide for MGate MB3000 Series

Affected Vendors

Moxa

Affected Products (3)

Moxa · MGate MB3280 Series <= 4.1
Moxa · MGate MB3180 Series <= 2.2
Moxa · MGate MB3480 Series <= 3.2

Affected Sectors

Multiple Sectors

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more