VYPR
Critical severity9.8NVD Advisory· Published Mar 5, 2019· Updated Jun 17, 2026

CVE-2019-6563

CVE-2019-6563

Description

Moxa IKS and EDS generate a predictable cookie calculated with an MD5 hash, allowing an attacker to capture the administrator's password, which could lead to a full compromise of the device.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

8
  • cpe:2.3:o:moxa:eds-405a_firmware:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:moxa:eds-405a_firmware:*:*:*:*:*:*:*:*range: <=3.8
    • cpe:2.3:o:moxa:eds-408a_firmware:*:*:*:*:*:*:*:*range: <=3.8
  • cpe:2.3:o:moxa:eds-510a_firmware:*:*:*:*:*:*:*:*
    Range: <=3.8
  • cpe:2.3:o:moxa:iks-g6824a_firmware:*:*:*:*:*:*:*:*
    Range: <=4.5
  • Moxa/IKS and EDSllm-create
  • Moxa/IKSllm-fuzzy
  • Moxa/EDSllm-fuzzy
  • ICS-CERT/Moxa IKS, EDSv5
    Range: IKS-G6824A series Versions 4.5 and prior, EDS-405A series Version 3.8 and prior, EDS-408A series Version 3.8 and prior, and EDS-510A series Version 3.8 and prior

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.