VYPR
High severity7.8NVD Advisory· Published Nov 5, 2020· Updated Jun 17, 2026

CVE-2020-13536

CVE-2020-13536

Description

An exploitable local privilege elevation vulnerability exists in the file system permissions of Moxa MXView series 3.1.8 installation. Depending on the vector chosen, an attacker can either add code to a script or replace a binary. By default MXViewService, which starts as a NT SYSTEM authority user executes a series of Node.Js scripts to start additional application functionality.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Moxa/Mxview2 versions
    cpe:2.3:a:moxa:mxview:3.1.8:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:moxa:mxview:3.1.8:*:*:*:*:*:*:*
    • (no CPE)range: = 3.1.8
  • Moxa/MXView seriesdescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.