cvedb.io
CVE-2017-13699
HIGH · CVSS 7.5
EPSS exploitation probability: 0%
Published 2017-11-23T21:29:00.297 · Last modified 2026-06-17T01:05:00.723

Summary

An issue was discovered on MOXA EDS-G512E 5.1 build 16072215 devices. The password encryption method can be retrieved from the firmware. This encryption method is based on a chall value that is sent in cleartext as a POST parameter. An attacker could reverse the password encryption algorithm to retrieve it.

Affected products

moxa — eds-g512e_firmware

Does this affect you?

Add your gear to cvedb and we'll alert you only when moxa ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.