CVE-2020-28144: Moxa Edr-810-2gsfp-T Firmware
Critical severity, CVSS 9.8. EPSS: 2.6% chance of exploitation in the next 30 days.
Certain Moxa Inc products are affected by an improper restriction of operations in EDR-G903 Series Firmware Version 5.5 or lower, EDR-G902 Series Firmware Version 5.5 or lower, and EDR-810 Series Firmware Version 5.6 or lower. Crafted requests sent to the device may allow remote arbitrary code execution.
Affected products
- Moxa Edr-810-2gsfp-T Firmware: up to and including 5.6
- Moxa Edr-810-2gsfp Firmware: up to and including 5.6
- Moxa Edr-810-VPN-2gsfp-T Firmware: up to and including 5.6
- Moxa Edr-810-VPN-2gsfp Firmware: up to and including 5.6
- Moxa Edr-g902-T Firmware: up to and including 5.5
- Moxa Edr-g902 Firmware: up to and including 5.5
- Moxa Edr-g903-T Firmware: up to and including 5.5
- Moxa Edr-g903 Firmware: up to and including 5.5
Published 2021-02-03. Last modified 2026-06-17.