CVE-2024-6786: Moxa Mxview One
Medium severity, CVSS 6.5. EPSS: 0.6% chance of exploitation in the next 30 days.
The vulnerability allows an attacker to craft MQTT messages that include relative path traversal sequences, enabling them to read arbitrary files on the system. This could lead to the disclosure of sensitive information, such as configuration files and JWT signing secrets.
Affected products
- Moxa Mxview One: before 1.4.1 (fixed in 1.4.1)
Published 2024-09-21. Last modified 2026-06-17.