CVE-2020-14511: Moxa Edr-g902-T Firmware

Critical severity, CVSS 9.8. EPSS: 1.4% chance of exploitation in the next 30 days.

Malicious operation of the crafted web browser cookie may cause a stack-based buffer overflow in the system web server on the EDR-G902 and EDR-G903 Series Routers (versions prior to 5.4).

Affected products

  • Moxa Edr-g902-T Firmware: up to and including 5.4
  • Moxa Edr-g902 Firmware: up to and including 5.4
  • Moxa Edr-g903-T Firmware: up to and including 5.4
  • Moxa Edr-g903 Firmware: up to and including 5.4

Published 2020-07-15. Last modified 2026-06-17.