Vulnerability Details CVE-2020-27185
Cleartext transmission of sensitive information via Moxa Service in NPort IA5000A series serial devices. Successfully exploiting the vulnerability could enable attackers to read authentication data, device configuration, and other sensitive data transmitted over Moxa Service.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 42.6%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 5.0
Products affected by CVE-2020-27185
-
cpe:2.3:h:moxa:nport_ia5150a:-
-
cpe:2.3:h:moxa:nport_ia5250a:-
-
cpe:2.3:h:moxa:nport_ia5450a:-
-
cpe:2.3:o:moxa:nport_ia5150a_firmware:-
-
cpe:2.3:o:moxa:nport_ia5150a_firmware:1.4
-
cpe:2.3:o:moxa:nport_ia5250a_firmware:-
-
cpe:2.3:o:moxa:nport_ia5250a_firmware:1.4
-
cpe:2.3:o:moxa:nport_ia5450a_firmware:-
-
cpe:2.3:o:moxa:nport_ia5450a_firmware:1.7