CVE-2024-1220: Moxa Nport w2150a-T Firmware

High severity, CVSS 7.5. EPSS: 0.7% chance of exploitation in the next 30 days.

A stack-based buffer overflow in the built-in web server in Moxa NPort W2150A/W2250A Series firmware version 2.3 and prior allows a remote attacker to exploit the vulnerability by sending crafted payload to the web service. Successful exploitation of the vulnerability could result in denial of service.

Affected products

  • Moxa Nport w2150a-T Firmware: up to and including 2.3
  • Moxa Nport w2150a Firmware: up to and including 2.3
  • Moxa Nport w2250a-T Firmware: up to and including 2.3
  • Moxa Nport w2250a Firmware: up to and including 2.3

Published 2024-03-06. Last modified 2026-06-17.