CVE-2016-2282: Moxa Ioadmin Firmware

Medium severity, CVSS 5.3. EPSS: 1.7% chance of exploitation in the next 30 days.

Moxa ioLogik E2200 devices before 3.12 and ioAdmin Configuration Utility before 3.18 do not properly encrypt credentials, which makes it easier for remote attackers to obtain the associated cleartext via unspecified vectors.

Affected products

  • Moxa Ioadmin Firmware: up to and including 3.17
  • Moxa Iologik Firmware: up to and including 3.11

Published 2016-03-04. Last modified 2026-06-17.