VYPR

network security appliances

by Moxa

CVEs (2)

  • CVE-2025-6950CriOct 17, 2025
    risk 0.64cvss epss 0.00

    An Use of Hard-coded Credentials vulnerability has been identified in Moxa’s network security appliances and routers. The system employs a hard-coded secret key to sign JSON Web Tokens (JWT) used for authentication. This insecure implementation allows an unauthenticated…

  • CVE-2025-6894MedOct 17, 2025
    risk 0.34cvss epss 0.00

    An Execution with Unnecessary Privileges vulnerability has been identified in Moxa’s network security appliances and routers. A flaw in the API authorization logic of the affected device allows an authenticated, low-privileged user to execute the administrative `ping`…