CVE-2022-3088
Description
UC-8100A-ME-T System Image: Versions v1.0 to v1.6, UC-2100 System Image: Versions v1.0 to v1.12, UC-2100-W System Image: Versions v1.0 to v 1.12, UC-3100 System Image: Versions v1.0 to v1.6, UC-5100 System Image: Versions v1.0 to v1.4, UC-8100 System Image: Versions v3.0 to v3.5, UC-8100-ME-T System Image: Versions v3.0 and v3.1, UC-8200 System Image: v1.0 to v1.5, AIG-300 System Image: v1.0 to v1.4, UC-8410A with Debian 9 System Image: Versions v4.0.2 and v4.1.2, UC-8580 with Debian 9 System Image: Versions v2.0 and v2.1, UC-8540 with Debian 9 System Image: Versions v2.0 and v2.1, and DA-662C-16-LX (GLB) System Image: Versions v1.0.2 to v1.1.2 of Moxa's ARM-based computers have an execution with unnecessary privileges vulnerability, which could allow an attacker with user-level privileges to gain root privileges.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
90- cpe:2.3:o:moxa:aig-301-ap-azu-lx_firmware:*:*:*:*:*:*:*:*Range: >=1.0,<=1.4
- cpe:2.3:o:moxa:aig-301-azu-lx_firmware:*:*:*:*:*:*:*:*Range: >=1.0,<=1.4
- cpe:2.3:o:moxa:aig-301-cn-azu-lx_firmware:*:*:*:*:*:*:*:*Range: >=1.0,<=1.4
- cpe:2.3:o:moxa:aig-301-eu-azu-lx_firmware:*:*:*:*:*:*:*:*Range: >=1.0,<=1.4
- cpe:2.3:o:moxa:aig-301-t-ap-azu-lx_firmware:*:*:*:*:*:*:*:*Range: >=1.0,<=1.4
- cpe:2.3:o:moxa:aig-301-t-azu-lx_firmware:*:*:*:*:*:*:*:*Range: >=1.0,<=1.4
- cpe:2.3:o:moxa:aig-301-t-cn-azu-lx_firmware:*:*:*:*:*:*:*:*Range: >=1.0,<=1.4
- cpe:2.3:o:moxa:aig-301-t-eu-azu-lx_firmware:*:*:*:*:*:*:*:*Range: >=1.0,<=1.4
- cpe:2.3:o:moxa:aig-301-t-us-azu-lx_firmware:*:*:*:*:*:*:*:*Range: >=1.0,<=1.4
- cpe:2.3:o:moxa:aig-301-us-azu-lx_firmware:*:*:*:*:*:*:*:*Range: >=1.0,<=1.4
- cpe:2.3:o:moxa:da-662c-16-lx_firmware:*:*:*:*:*:*:*:*Range: >=1.0.2,<=1.1.2
- cpe:2.3:o:moxa:uc-3101-t-ap-lx_firmware:*:*:*:*:*:*:*:*Range: >=1.0,<=1.6
- cpe:2.3:o:moxa:uc-3101-t-eu-lx_firmware:*:*:*:*:*:*:*:*Range: >=1.0,<=1.6
- cpe:2.3:o:moxa:uc-3101-t-us-lx_firmware:*:*:*:*:*:*:*:*Range: >=1.0,<=1.6
- cpe:2.3:o:moxa:uc-3111-t-ap-lx-nw_firmware:*:*:*:*:*:*:*:*Range: >=1.0,<=1.6
- cpe:2.3:o:moxa:uc-3111-t-ap-lx_firmware:*:*:*:*:*:*:*:*Range: >=1.0,<=1.6
- cpe:2.3:o:moxa:uc-3111-t-eu-lx-nw_firmware:*:*:*:*:*:*:*:*Range: >=1.0,<=1.6
- cpe:2.3:o:moxa:uc-3111-t-eu-lx_firmware:*:*:*:*:*:*:*:*Range: >=1.0,<=1.6
- cpe:2.3:o:moxa:uc-3111-t-us-lx-nw_firmware:*:*:*:*:*:*:*:*Range: >=1.0,<=1.6
- cpe:2.3:o:moxa:uc-3111-t-us-lx_firmware:*:*:*:*:*:*:*:*Range: >=1.0,<=1.6
- cpe:2.3:o:moxa:uc-3121-t-ap-lx_firmware:*:*:*:*:*:*:*:*Range: >=1.0,<=1.6
- cpe:2.3:o:moxa:uc-3121-t-eu-lx_firmware:*:*:*:*:*:*:*:*Range: >=1.0,<=1.6
- cpe:2.3:o:moxa:uc-3121-t-us-lx_firmware:*:*:*:*:*:*:*:*Range: >=1.0,<=1.6
cpe:2.3:o:moxa:uc-8112-me-t-lx1_firmware:3.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:moxa:uc-8112-me-t-lx1_firmware:3.0:*:*:*:*:*:*:*
- cpe:2.3:o:moxa:uc-8112-me-t-lx1_firmware:3.1:*:*:*:*:*:*:*
cpe:2.3:o:moxa:uc-8112-me-t-lx_firmware:3.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:moxa:uc-8112-me-t-lx_firmware:3.0:*:*:*:*:*:*:*
- cpe:2.3:o:moxa:uc-8112-me-t-lx_firmware:3.1:*:*:*:*:*:*:*
- cpe:2.3:o:moxa:uc-8112a-me-t-lx_firmware:*:*:*:*:*:*:*:*Range: >=1.0,<=1.6
- cpe:2.3:o:moxa:uc-8220-t-lx-ap-s_firmware:*:*:*:*:*:*:*:*Range: >=1.0,<=1.5
- cpe:2.3:o:moxa:uc-8220-t-lx-eu-s_firmware:*:*:*:*:*:*:*:*Range: >=1.0,<=1.5
- cpe:2.3:o:moxa:uc-8220-t-lx-s_firmware:*:*:*:*:*:*:*:*Range: >=1.0,<=1.5
- cpe:2.3:o:moxa:uc-8220-t-lx-us-s_firmware:*:*:*:*:*:*:*:*Range: >=1.0,<=1.5
- cpe:2.3:o:moxa:uc-8410a-nw-lx_firmware:*:*:*:*:*:*:*:*Range: >=4.0.2,<=4.1.2
- cpe:2.3:o:moxa:uc-8410a-nw-t-lx_firmware:*:*:*:*:*:*:*:*Range: >=4.0.2,<=4.1.2
- cpe:2.3:o:moxa:uc-8410a-t-lx_firmware:*:*:*:*:*:*:*:*Range: >=4.0.2,<=4.1.2
cpe:2.3:o:moxa:uc-8540-lx_firmware:2.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:moxa:uc-8540-lx_firmware:2.0:*:*:*:*:*:*:*
- cpe:2.3:o:moxa:uc-8540-lx_firmware:2.1:*:*:*:*:*:*:*
cpe:2.3:o:moxa:uc-8540-t-ct-lx_firmware:2.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:moxa:uc-8540-t-ct-lx_firmware:2.0:*:*:*:*:*:*:*
- cpe:2.3:o:moxa:uc-8540-t-ct-lx_firmware:2.1:*:*:*:*:*:*:*
cpe:2.3:o:moxa:uc-8540-t-lx_firmware:2.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:moxa:uc-8540-t-lx_firmware:2.0:*:*:*:*:*:*:*
- cpe:2.3:o:moxa:uc-8540-t-lx_firmware:2.1:*:*:*:*:*:*:*
cpe:2.3:o:moxa:uc-8580-lx_firmware:2.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:moxa:uc-8580-lx_firmware:2.0:*:*:*:*:*:*:*
- cpe:2.3:o:moxa:uc-8580-lx_firmware:2.1:*:*:*:*:*:*:*
cpe:2.3:o:moxa:uc-8580-q-lx_firmware:2.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:moxa:uc-8580-q-lx_firmware:2.0:*:*:*:*:*:*:*
- cpe:2.3:o:moxa:uc-8580-q-lx_firmware:2.1:*:*:*:*:*:*:*
cpe:2.3:o:moxa:uc-8580-t-ct-lx_firmware:2.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:moxa:uc-8580-t-ct-lx_firmware:2.0:*:*:*:*:*:*:*
- cpe:2.3:o:moxa:uc-8580-t-ct-lx_firmware:2.1:*:*:*:*:*:*:*
cpe:2.3:o:moxa:uc-8580-t-ct-q-lx_firmware:2.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:moxa:uc-8580-t-ct-q-lx_firmware:2.0:*:*:*:*:*:*:*
- cpe:2.3:o:moxa:uc-8580-t-ct-q-lx_firmware:2.1:*:*:*:*:*:*:*
cpe:2.3:o:moxa:uc-8580-t-lx_firmware:2.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:moxa:uc-8580-t-lx_firmware:2.0:*:*:*:*:*:*:*
- cpe:2.3:o:moxa:uc-8580-t-lx_firmware:2.1:*:*:*:*:*:*:*
cpe:2.3:o:moxa:uc-8580-t-q-lx_firmware:2.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:moxa:uc-8580-t-q-lx_firmware:2.0:*:*:*:*:*:*:*
- cpe:2.3:o:moxa:uc-8580-t-q-lx_firmware:2.1:*:*:*:*:*:*:*
v1.0 to v1.6+ 2 more
- (no CPE)range: v1.0 to v1.6
- (no CPE)range: 3.0
- (no CPE)range: 1.0
v1.0 to v1.12+ 6 more
- (no CPE)range: v1.0 to v1.12
- (no CPE)range: 1.0
- (no CPE)range: 1.0
- (no CPE)range: 1.0
- (no CPE)range: 1.0
- (no CPE)range: 3.0
- (no CPE)range: 1.0
- Moxa/AIG-300 System Imagev5Range: 1.0
- Moxa/DA-662C-16-LX (GLB) System Imagev5Range: 1.0.2
- Moxa/UC-8410A with Debian 9 System Imagev5Range: 4.0.2 and 4.1.2
- Moxa/UC-8540 with Debian 9 System Imagev5Range: 2.0 and 2.1
- Moxa/UC-8580 with Debian 9 System Imagev5Range: 2.0 and 2.1
Patches
Vulnerability mechanics
References
1- www.cisa.gov/uscert/ics/advisories/icsa-22-326-05nvdThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.