CVE-2024-1220

A stack-based buffer overflow in the built-in web server in Moxa NPort W2150A/W2250A Series firmware version 2.3 and prior allows a remote attacker to exploit the vulnerability by sending crafted payload to the web service. Successful exploitation of the vulnerability could result in denial of service.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:moxa:nport_w2150a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:moxa:nport_w2150a:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:moxa:nport_w2250a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:moxa:nport_w2250a:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:moxa:nport_w2150a-t_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:moxa:nport_w2150a-t:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:moxa:nport_w2250a-t_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:moxa:nport_w2250a-t:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-03-06 02:15

Updated : 2025-02-25 17:42


NVD link : CVE-2024-1220

Mitre link : CVE-2024-1220

CVE.ORG link : CVE-2024-1220


JSON object : View

Products Affected

moxa

  • nport_w2250a-t_firmware
  • nport_w2250a
  • nport_w2250a_firmware
  • nport_w2150a_firmware
  • nport_w2150a
  • nport_w2150a-t_firmware
  • nport_w2250a-t
  • nport_w2150a-t
CWE
CWE-121

Stack-based Buffer Overflow

CWE-787

Out-of-bounds Write