CVE-2015-6481: Moxa Oncell Central Manager

High severity, CVSS 8.3. EPSS: 1.7% chance of exploitation in the next 30 days.

The login function in the RequestController class in Moxa OnCell Central Manager before 2.2 has a hardcoded root password, which allows remote attackers to obtain administrative access via a login session.

Affected products

  • Moxa Oncell Central Manager: up to and including 2.0

Published 2015-12-21. Last modified 2026-06-17.