CVE-2016-9344 Vulnerability Details
/
/
/
CVE-2016-9344 Metadata Quick Info
CVE Published: 13/02/2017 |
CVE Updated: 06/08/2024 |
CVE Year: 2016
Source: icscert |
Vendor: n/a |
Product: Moxa MiiNePort
Status : PUBLISHED
CVE-2016-9344 Description
An issue was discovered in Moxa MiiNePort E1 versions prior to 1.8, E2 versions prior to 1.4, and E3 versions prior to 1.1. An attacker may be able to brute force an active session cookie to be able to download configuration files.
Metrics
CVSS Version: 3.1 |
Base Score: n/a
Vector: n/a
l➤ Exploitability Metrics:
Attack Vector (AV)*
Attack Complexity (AC)*
Privileges Required (PR)*
User Interaction (UI)*
Scope (S)*
l➤ Impact Metrics:
Confidentiality Impact (C)*
Integrity Impact (I)*
Availability Impact (A)*
Weakness Enumeration (CWE)
CWE-ID:
CWE Name: Moxa MiiNePort Session Hijack
Source: n/a
Common Attack Pattern Enumeration and Classification (CAPEC)
CAPEC-ID:
CAPEC Description:
Source: NVD (National Vulnerability Database).