Known vulnerabilities in MXview

Vendor: Moxa
Software: MXview
Software CPE: cpe:2.3:a:moxa:mxview:*:*:*:*:*:*:*:*
Total vulnerabilities: 14
Public exploits: 4
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting MXview MXview is affected by 14 known vulnerabilities: 6 high, 6 medium, 2 low Critical High Medium Low

Vulnerabilities (14)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU62730 - Improper Control of Generation of Code ('Code Injection')
CWE-94 Medium
No
No
- 03.05.2022 SB2022050301
#VU60560 - Use of Hard-coded Credentials
CVE-2021-40390
CWE-798 High
No
No
3.2.6 14.02.2022 SB2022021401
#VU60559 - Cleartext Transmission of Sensitive Information
CVE-2021-40392
CWE-319 Medium
No
No
3.2.6 14.02.2022 SB2022021401
#VU57087 - Improper Access Control
CVE-2021-38454
CWE-284 High
No
No
3.2.4 06.10.2021 SB2021100607
#VU57086 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CVE-2021-38458
CWE-74 High
No
No
3.2.4 06.10.2021 SB2021100607
#VU57085 - Unprotected Transport of Credentials
CVE-2021-38460
CWE-523 Medium
No
No
3.2.4 06.10.2021 SB2021100607
#VU57084 - Use of Hard-coded Password
CVE-2021-38456
CWE-259 High
No
No
3.2.4 06.10.2021 SB2021100607
#VU57083 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-38452
CWE-22 Medium
No
No
3.2.4 06.10.2021 SB2021100607
#VU48100 - Permissions, Privileges, and Access Controls
CVE-2020-13537
CWE-264 High
Available
No
3.1.10 03.11.2020 SB2020110307
#VU48099 - Incorrect Default Permissions
CVE-2020-13536
CWE-276 High
Available
No
3.1.10 03.11.2020 SB2020110307
#VU11611 - Exposure of sensitive information to an unauthorized actor
CVE-2018-7506
CWE-200 Low
No
No
- 05.04.2018 SB2018040610
#VU9998 - Uncontrolled Search Path Element
CVE-2017-14030
CWE-427 Low
No
No
- 11.01.2018 SB2018011204
#VU39182 - Exposure of sensitive information to an unauthorized actor
CVE-2017-7455
CWE-200 Medium
Available
No
- 14.04.2017 SB2017041411
#VU39183 - Improper input validation
CVE-2017-7456
CWE-20 Medium
Available
No
- 14.04.2017 SB2017041411