Vulnerability Details CVE-2023-33237
TN-5900 Series firmware version v3.3 and prior is vulnerable to improper-authentication vulnerability. This vulnerability arises from inadequate authentication measures implemented in the web API handler, allowing low-privileged APIs to execute restricted actions that only high-privileged APIs are allowed This presents a potential risk of unauthorized exploitation by malicious actors.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 52.2%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2023-33237
-
-
cpe:2.3:o:moxa:tn-5900_firmware:-
-
cpe:2.3:o:moxa:tn-5900_firmware:3.1
-
cpe:2.3:o:moxa:tn-5900_firmware:3.2
-
cpe:2.3:o:moxa:tn-5900_firmware:3.3