CVE-2017-13701 describes a critical vulnerability in MOXA EDS-G512E 5.1 build 16072215 devices where sensitive information, including unsalted and unencrypted passwords, is stored insecurely within backup files. This allows an unauthenticated attacker to remotely access and compromise the device with full confidentiality, integrity, and availability impact, as indicated by its CVSS score of 9.8 (CRITICAL). Despite its high severity, there is no known active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
5.1CPE matchmatch criteria | cpe:2.3:o:moxa:eds-g512e_firmware:5.1:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.