CVE-2016-8723: Moxa Awk-3131a Firmware

High severity, CVSS 7.5. EPSS: 1.4% chance of exploitation in the next 30 days.

An exploitable null pointer dereference exists in the Web Application functionality of Moxa AWK-3131A Wireless Access Point running firmware 1.1. Any HTTP GET request not preceded by an '/' will cause a segmentation fault in the web server. An attacker can send any of a multitude of potentially unexpected HTTP get requests to trigger this vulnerability.

Affected products

  • Moxa Awk-3131a Firmware: version 1.1 only

Published 2017-04-13. Last modified 2026-06-17.