EDS-G516E and EDS-510E Series Ethernet Switches Vulnerabilities

Published: September 25, 2019

This Alert Is From MOXA

As Industrial IoT (IIoT) adoption continues to proliferate, cybersecurity has become one of the top priorities. The Moxa Product Security Incident Response Team (PSIRT) takes a proactive approach to protect products from cybersecurity vulnerabilities. Moxa PSIRT investigates all reports of vulnerabilities that could potentially affect Moxa products. Moxa created a vulnerability management policy to provide guidance and information to our customers in the event of a reported vulnerability. The management policy ensures that Moxa’s customers have steady, unambiguous resources to help them understand how Moxa resolves or mitigates reported vulnerabilities. For any queries, please email [email protected].

Multiple product vulnerabilities were identified in Moxa’s EDS-G516E and EDS-510E Series Ethernet Switches. In response to this, Moxa has developed related solutions to address these vulnerabilities.

The identified vulnerability types and potential impacts are shown below:

Item Vulnerability Type Impact
1

Stack-based buffer overflow (CWE-121), CVE-2020-7007

  1. The attacker may execute arbitrary codes or target the device to cause it to go out of service.
  2. The attacker may cause the target device to go out of service, or to execute arbitrary codes. The web setting page IEEE802.1x setting page is where the vulnerabilities found.
2 Use of a broken or risky cryptographic algorithm (CWE-327), CVE-2020-7001
  1. Using a weak cryptographic algorithm may allow confidential information to be disclosed.
  2. Improper implementation of the cryptographic function may allow confidential information to be disclosed.
3 Use of a hard-coded cryptographic key (CWE-321), CVE-2020-6979 Using a hard-coded cryptographic key may increase the possibility that confidential data can be recovered.
4 Use of a hard-coded password (CWE-798), CVE-2020-6981 A user with malicious intent may gain access to the system without proper authentication.
5 Buffer Copy without Checking Size of Input (CWE-120), CVE-2020-6999
  1. To exploit this vulnerability, the attacker may cause the target device to go out of service. Some of the parameters in the syslog setting page do not ensure that the length of the text is not too long.
  2. To exploit this vulnerability, the attacker may cause the target device to go out of service. Some of the parameters in the DHCP setting page do not ensure that the length of the text is not too long.
  3. To exploit this vulnerability, the attacker may cause the target device to go out of service. Some of the parameters in the PTP setting page do not ensure that the length of the text is not too long.
6 User credentials are sent in clear text (CWE-319), CVE-2020-6997 To exploit this vulnerability, the attacker may intercept the information from the clear text communication.
7 Weak password requirements (CWE-521), CVE-2020-6991 A user with malicious intent may try to retrieve credentials by using brute force.

 

This alert has come from: https://www.moxa.com/en/support/product-support/security-advisory/eds-g516e-510e-ethernet-switches-vulnerabilities