CVE-2016-5812 describes a vulnerability in Moxa OnCell G3100V2 devices before version 2.8 and G3111, G3151, G3211, and G3251 devices before version 1.7, where passwords are stored in cleartext within configuration files. This flaw allows local users to easily access sensitive information. The vulnerability is rated as LOW severity with a CVSS score of 3.3, indicating a low attack complexity and impact, primarily affecting confidentiality. There is no evidence of active exploitation, and no public exploit code is available in Metasploit, Nuclei, or ExploitDB. Community discussion and media coverage are minimal, with only one article from SecurityWeek mentioning the vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 1.6CPE matchmatch criteria | cpe:2.3:o:moxa:oncell_g3001_firmware:*:*:*:*:*:*:*:* | ||
<= 2.7CPE matchmatch criteria | cpe:2.3:o:moxa:oncell_g3100v2_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.