Security Advisory

CVE-2024-0387

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-02-26 13:26:56
Last updated 2024-10-28 06:15:50
Assigner Moxa
State PUBLISHED

Description

The EDS-4000/G4000 Series prior to version 3.2 includes IP forwarding capabilities that users cannot deactivate. An attacker may be able to send requests to the product and have it forwarded to the target. An attacker can bypass access controls or hide the source of malicious requests.