Critical severity9.8NVD Advisory· Published Mar 5, 2019· Updated Jun 17, 2026
CVE-2019-6563
CVE-2019-6563
Description
Moxa IKS and EDS generate a predictable cookie calculated with an MD5 hash, allowing an attacker to capture the administrator's password, which could lead to a full compromise of the device.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8cpe:2.3:o:moxa:eds-405a_firmware:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:moxa:eds-405a_firmware:*:*:*:*:*:*:*:*range: <=3.8
- cpe:2.3:o:moxa:eds-408a_firmware:*:*:*:*:*:*:*:*range: <=3.8
- ICS-CERT/Moxa IKS, EDSv5Range: IKS-G6824A series Versions 4.5 and prior, EDS-405A series Version 3.8 and prior, EDS-408A series Version 3.8 and prior, and EDS-510A series Version 3.8 and prior
Patches
Vulnerability mechanics
References
2- www.securityfocus.com/bid/107178nvdThird Party AdvisoryVDB Entry
- ics-cert.us-cert.gov/advisories/ICSA-19-057-01nvdThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.