← Back to home
ICSA-24-268-05  ·  Published 2024-09-24  ·  View on CISA ICS-CERT ↗

Moxa MXview One

CVSS 6.5 MEDIUM

Risk Summary

Successful exploitation of these vulnerabilities could allow an attacker to expose local credentials and write arbitrary files to the system, resulting in execution of malicious code.

Remediations

  • Moxa recommends the following to address the vulnerabilities:
  • MXview One Series: Upgrade to v1.4.1
  • MXview One Cerntral Manager Series: Upgrade to v1.0.3
  • Minimize network exposure to ensure the device is not accessible from the Internet.
  • Change the default credentials immediately upon first login to the service. This helps enhance security and prevent unauthorized access.

Affected Vendors

Moxa

Affected Products (2)

Moxa · MXview One Series <=1.4.0
Moxa · MXview One Central Manager Series 1.0.0

Affected Sectors

Critical Manufacturing, Energy, Transportation Systems

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more