Tag: Authentication Bypass Vulnerability

Moxa Issues Fix for Critical Authentication Bypass Vulnerability in PT Switches
News

Moxa Issues Fix for Critical Authentication Bypass Vulnerability in PT Switches

To fix a serious security hole affecting its PT switches that could allow an attacker to get beyond authentication guarantees, Taiwanese company Moxa has released a security upgrade. The CVSS v4 score for the vulnerability, identified as CVE-2024-12297, is 9.2 out of a possible 10.0. In an alert published last week, the business stated that many Moxa PT switches have vulnerabilities in their authorization system that might allow an authentication bypass. Attackers can take advantage of flaws in its implementation even with client-side and back-end server verification. This flaw could jeopardize the device's security by allowing MD5 collision attacks to fake authentication hashes or brute-force attacks to guess legitimate credentials read more about Moxa Issues Fix for Critical Au...