CVE-2024-9138: Moxa Edf-g1002-Bp Series
High severity, CVSS 7.2. EPSS: 1.1% chance of exploitation in the next 30 days.
Moxa’s cellular routers, secure routers, and network security appliances are affected by a high-severity vulnerability, CVE-2024-9138. This vulnerability involves hard-coded credentials, enabling an authenticated user to escalate privileges and gain root-level access to the system, posing a significant security risk.
Affected products
- Moxa Edf-g1002-Bp Series: from 1.0, up to and including 3.13.1
- Moxa Edr-8010 Series: from 1.0, up to and including 3.13.1
- Moxa Edr-810 Series: from 1.0, up to and including 5.12.37
- Moxa Edr-g9004 Series: from 1.0, up to and including 3.13.1
- Moxa Edr-g9010 Series: from 1.0, up to and including 3.13.1
- Moxa Edr-g902 Series: from 1.0, up to and including 5.7.25
- Moxa Edr-g903 Series: from 1.0, up to and including 5.7.25
- Moxa Nat-102 Series: from 1.0, up to and including 1.0.5
- Moxa Oncell g4302-LTE4 Series: from 1.0, up to and including 3.13
- Moxa Tn-4900 Series: from 1.0, up to and including 3.13
Published 2025-01-03. Last modified 2026-06-17.