VYPR

EXO Series

by Moog

CVEs (2)

  • CVE-2020-24054Aug 21, 2020
    risk 0.00cvss epss 0.01

    The administration console of the Moog EXO Series EXVF5C-2 and EXVP7C2-3 units features a 'statusbroadcast' command that can spawn a given process repeatedly at a certain time interval as 'root'. One of the limitations of this feature is that it only takes a path to a binary…

  • CVE-2020-24053Aug 21, 2020
    risk 0.00cvss epss 0.00

    Moog EXO Series EXVF5C-2 and EXVP7C2-3 units have a hardcoded credentials vulnerability. This could cause a confidentiality issue when using the FTP, Telnet, or SSH protocols.