Vulnerability Details CVE-2020-25194
The built-in WEB server for MOXA NPort IAW5000A-I/O firmware version 2.1 or lower has improper privilege management, which may allow an attacker with user privileges to perform requests with administrative privileges.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 37.4%
CVSS Severity
CVSS v3 Score 8.8
CVSS v2 Score 6.5
Products affected by CVE-2020-25194
-
cpe:2.3:h:moxa:nport_iaw5000a-i/o:-
-
cpe:2.3:o:moxa:nport_iaw5000a-i/o_firmware:*