VYPR

V2406c Wl1 Ct T Firmware

by Moxa

CVEs (2)

  • CVE-2026-0715MedFeb 5, 2026
    risk 0.44cvss 6.8epss 0.00

    Moxa Arm-based industrial computers running Moxa Industrial Linux Secure use a device-unique bootloader password provided on the device. An attacker with physical access to the device could use this information to access the bootloader menu via a serial interface.  Access to…

  • CVE-2026-0714MedFeb 5, 2026
    risk 0.44cvss 6.8epss 0.00

    A physical attack vulnerability exists in certain Moxa industrial computers using TPM-backed LUKS full-disk encryption on Moxa Industrial Linux 3, where the discrete TPM is connected to the CPU via an SPI bus. Exploitation requires invasive physical access, including opening…