Moxa IKS and EDS generate a predictable cookie calculated with an MD5 hash, allowing an attacker to capture the administrators password, which could lead to a full compromise of the device.
A number or object is predictable based on observations that the attacker can make about the state of the system or network, such as time, process ID, etc.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Iks-g6824a_firmware | Moxa | * | 4.5 (including) |