Exploiting improper authentication and/or input validation vulnerabilities could allow a remote attacker to execute arbitrary code via malicious requests.
The identified vulnerability types and potential impacts are shown below:
| Item | Vulnerability Type | Impact |
|---|---|---|
| 1 |
Improper Authentication |
The web service has a command injection vulnerability that can be exploited without proper authentication. |
| 2 | Improper Input Validation (CWE-20) CVE-2022-41759 |
The web service has a command injection vulnerability. |
This alert has come from: https://www.moxa.com/en/support/product-support/security-advisory/multiple-routers-improper-input-validation-vulnerabilities