A remote code execution (RCE) vulnerability since MXview v3.0 allows attackers with local privilege to gain system privilege and execute arbitrary code via a crafted module.
The identified vulnerability types and potential impacts are shown below:
| Item | Vulnerability Type | Impact |
|---|---|---|
| 1 | Improper Control of Generation of Code (CWE-94) |
Attackers with local privilege could gain system privilege to execute arbitrary code via a crafted module. |
This alert has come from: https://www.moxa.com/en/support/product-support/security-advisory/mxview-privilege-escalation-vulnerability