VYPR
Unrated severityNVD Advisory· Published Feb 26, 2024· Updated Oct 28, 2024

EDS-4000/G4000 Series IP Forwarding Vulnerability

CVE-2024-0387

Description

The EDS-4000/G4000 Series prior to version 3.2 includes IP forwarding capabilities that users cannot deactivate. An attacker may be able to send requests to the product and have it forwarded to the target. An attacker can bypass access controls or hide the source of malicious requests.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

8
  • Moxa/EDS-4000/G4000 Seriesllm-create4 versions
    <3.2+ 3 more
    • (no CPE)range: <3.2
    • (no CPE)range: 1.0
    • (no CPE)range: 1.0
    • (no CPE)range: 1.0
  • Moxa/EDS-405A/408A Seriescpe-rescue4 versions
    1.0+ 3 more
    • (no CPE)range: 1.0
    • (no CPE)range: 1.0
    • (no CPE)range: 1.0
    • (no CPE)range: 1.0

Patches

Vulnerability mechanics

No source-code context for this CVE — mechanics is only generated when we can read the actual fix diff. Without that, the four sections (root cause, attack vector, affected code, fix) would be speculation rather than analysis.

References

1

News mentions

0

No linked articles in our index yet.