Security Advisory

CVE-2015-6480

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2015-12-21 11:00:00
Last updated 2024-08-06 07:22:21
Assigner icscert
State PUBLISHED

Description

The MessageBrokerServlet servlet in Moxa OnCell Central Manager before 2.2 does not require authentication, which allows remote attackers to obtain administrative access via a command, as demonstrated by the addUserAndGroup action.