CVE-2021-33823

An issue was discovered on MOXA Mgate MB3180 Version 2.1 Build 18113012. Attacker could send a huge amount of TCP SYN packet to make web service's resource exhausted. Then the web server is denial-of-service.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:moxa:mgate_mb3180_firmware:2.1:build_18113012:*:*:*:*:*:*
cpe:2.3:h:moxa:mgate_mb3180:-:*:*:*:*:*:*:*

History

12 Jul 2022, 17:42

Type Values Removed Values Added
CWE CWE-400 NVD-CWE-noinfo

24 Jun 2021, 18:49

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : 5.0
v3 : 7.5
CWE CWE-400
CPE cpe:2.3:h:moxa:mgate_mb3180:-:*:*:*:*:*:*:*
cpe:2.3:o:moxa:mgate_mb3180_firmware:2.1:build_18113012:*:*:*:*:*:*
References (MISC) https://github.com/Jian-Xian/CVE-POC/blob/master/CVE-2021-33823.md - (MISC) https://github.com/Jian-Xian/CVE-POC/blob/master/CVE-2021-33823.md - Exploit, Third Party Advisory
References (MISC) https://www.moxa.com/en/products/industrial-edge-connectivity/protocol-gateways/modbus-tcp-gateways/mgate-mb3180-mb3280-mb3480-series - (MISC) https://www.moxa.com/en/products/industrial-edge-connectivity/protocol-gateways/modbus-tcp-gateways/mgate-mb3180-mb3280-mb3480-series - Product, Vendor Advisory

18 Jun 2021, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2021-06-18 20:15

Updated : 2023-12-10 13:55


NVD link : CVE-2021-33823

Mitre link : CVE-2021-33823

CVE.ORG link : CVE-2021-33823


JSON object : View

Products Affected

moxa

  • mgate_mb3180
  • mgate_mb3180_firmware