SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2023-5962

A weak cryptographic algorithm vulnerability has been identified in ioLogik E1200 Series firmware versions v3.3 and prior.

MEDIUM 6.5EPSS 0.28%

Does this matter?

Lower severity and a low EPSS score (0.28%). Track it; it rarely justifies an emergency change on its own.

Description

A weak cryptographic algorithm vulnerability has been identified in ioLogik E1200 Series firmware versions v3.3 and prior. This vulnerability can help an attacker compromise the confidentiality of sensitive data. This vulnerability may lead an attacker to get unexpected authorization.

CVSS 3.1
6.5 MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
EPSS
0.28% probability · 20th percentile
CISA KEV
Not listed
Weakness
CWE-328, CWE-327
Affected
moxa/iologik e1210 firmware · moxa/iologik e1211 firmware · moxa/iologik e1212 firmware · moxa/iologik e1213 firmware · moxa/iologik e1214 firmware · moxa/iologik e1240 firmware · moxa/iologik e1241 firmware · moxa/iologik e1242 firmware · moxa/iologik e1260 firmware · moxa/iologik e1262 firmware
Source
psirt@moxa.com

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.