SSH: Moxa MXsecurity Series Restricted Shell Command Injection

This signature detects attempts to exploit a known vulnerability against Moxa MXsecurity Series. A successful attack can lead to command injection and arbitrary code execution.

Extended Description

MXsecurity version 1.0 is vulnearble to command injection vulnerability. This vulnerability has been reported in the SSH CLI program, which can be exploited by attackers who have gained authorization privileges. The attackers can break out of the restricted shell and subsequently execute arbitrary code.

Affected Products

Moxa mxsecurity

Short Name
SSH:OPENSSH:MOXA-SSH-CMD-INJ
Severity
Major
Recommended
False
Recommended Action
None
Category
SSH
Keywords
CVE-2023-33235 Command Injection MXsecurity Moxa Restricted Series Shell
Release Date
10/31/2023
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3647
False Positive
Unknown
Vendors

Moxa

Found a potential security threat?