ID

VAR-202103-1790


TITLE

MOXA AWK-1131A Ethernet 802LLC protocol has a denial of service vulnerability

Trust: 0.6

sources: CNVD: CNVD-2021-09657

DESCRIPTION

Moxa is a leading manufacturer of industrial automation, providing complete industrial equipment networking, industrial computers and industrial network solutions, and is committed to the joint promotion and practice of industrial Internet. The MOXA AWK-1131A Ethernet 802LLC protocol has a denial of service vulnerability, which can be exploited by an attacker to cause the device to fail to work normally.

Trust: 0.6

sources: CNVD: CNVD-2021-09657

IOT TAXONOMY

category:['ICS']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2021-09657

AFFECTED PRODUCTS

vendor:moxamodel:awk-1131ascope:eqversion:2.0.0

Trust: 0.6

sources: CNVD: CNVD-2021-09657

CVSS

SEVERITY

CVSSV2

CVSSV3

CNVD: CNVD-2021-09657
value: MEDIUM

Trust: 0.6

CNVD: CNVD-2021-09657
severity: MEDIUM
baseScore: 6.1
vectorString: AV:A/AC:L/AU:N/C:N/I:N/A:C
accessVector: ADJACENT_NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: COMPLETE
exploitabilityScore: 6.5
impactScore: 6.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

sources: CNVD: CNVD-2021-09657

EXTERNAL IDS

db:CNVDid:CNVD-2021-09657

Trust: 0.6

sources: CNVD: CNVD-2021-09657

SOURCES

db:CNVDid:CNVD-2021-09657

LAST UPDATE DATE

2022-05-04T09:32:29.262000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2021-09657date:2021-02-20T00:00:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2021-09657date:2021-03-03T00:00:00