CVE-2019-6522: Moxa Eds-405a Firmware
Critical severity, CVSS 9.1. EPSS: 2.5% chance of exploitation in the next 30 days.
Moxa IKS and EDS fails to properly check array bounds which may allow an attacker to read device memory on arbitrary addresses, and may allow an attacker to retrieve sensitive data or cause device reboot.
Affected products
- Moxa Eds-405a Firmware: up to and including 3.8
- Moxa Eds-408a Firmware: up to and including 3.8
- Moxa Eds-510a Firmware: up to and including 3.8
- Moxa Iks-g6824a Firmware: up to and including 4.5
Published 2019-03-05. Last modified 2026-06-17.