CVE-2024-9404: Moxa Eds-405a Series

High severity, CVSS 7.5. EPSS: 0.7% chance of exploitation in the next 30 days.

This vulnerability could lead to denial-of-service or service crashes. Exploitation of the moxa_cmd service, because of insufficient input validation, allows attackers to disrupt operations. If exposed to public networks, the vulnerability poses a significant remote threat, potentially allowing attackers to shut down affected systems.

Affected products

  • Moxa Eds-405a Series: from 1.0, up to and including 3.14
  • Moxa Eds-408a Series: from 1.0, up to and including 3.12
  • Moxa Eds-505a Series: from 1.0, up to and including 3.11
  • Moxa Eds-508a Series: from 1.0, up to and including 3.11
  • Moxa Eds-510a Series: from 1.0, up to and including 3.12
  • Moxa Eds-510e Series: from 1.0, up to and including 5.5
  • Moxa Eds-516a Series: from 1.0, up to and including 3.11
  • Moxa Eds-518a Series: from 1.0, up to and including 3.11
  • Moxa Eds-518e Series: from 1.0, up to and including 6.3
  • Moxa Eds-528e Series: from 1.0, up to and including 6.3
  • Moxa Eds-608 Series: from 1.0, up to and including 3.12
  • Moxa Eds-611 Series: from 1.0, up to and including 3.12
  • Moxa Eds-616 Series: from 1.0, up to and including 3.12
  • Moxa Eds-619 Series: from 1.0, up to and including 3.12
  • Moxa Eds-g508e Series: from 1.0, up to and including 6.4
  • Moxa Eds-g509 Series: from 1.0, up to and including 3.10
  • Moxa Eds-g512e Series: from 1.0, up to and including 6.4
  • Moxa Eds-g516e Series: from 1.0, up to and including 6.4
  • Moxa Eds-p506e Series: from 1.0, up to and including 5.8
  • Moxa Eds-p510 Series: from 1.0, up to and including 3.11
  • Moxa Eds-p510a Series: from 1.0, up to and including 3.11
  • Moxa Ics-g7526a Series: from 1.0, up to and including 5.10
  • Moxa Ics-g7528a Series: from 1.0, up to and including 5.10
  • Moxa Ics-g7748a Series: from 1.0, up to and including 5.9
  • Moxa Ics-g7750a Series: from 1.0, up to and including 5.9
  • and 23 more

Published 2024-12-04. Last modified 2026-06-17.