Vulnerability Details CVE-2023-3336
TN-5900 Series version 3.3 and prior versions is vulnearble to user enumeration vulnerability. The vulnerability may allow a remote attacker to determine whether a user is valid during password recovery through the web login page and enable a brute force attack with valid users.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 40.4%
CVSS Severity
CVSS v3 Score 5.3
Products affected by CVE-2023-3336
-
-
cpe:2.3:o:moxa:tn-5900_firmware:-
-
cpe:2.3:o:moxa:tn-5900_firmware:3.1
-
cpe:2.3:o:moxa:tn-5900_firmware:3.2
-
cpe:2.3:o:moxa:tn-5900_firmware:3.3