An exploitable command injection vulnerability exists in the hostname functionality of the Moxa AWK-3131A firmware version 1.13. A specially crafted entry to network configuration information can cause execution of arbitrary system commands, resulting in full control of the device. An attacker can send various authenticated requests to trigger this vulnerability.
                
            Metrics
Affected Vendors & Products
References
        History
                    No history.
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: talos
Published: 2020-02-25T15:28:37
Updated: 2024-08-04T19:47:56.568Z
Reserved: 2019-01-04T00:00:00
Link: CVE-2019-5142
 Vulnrichment
                        Vulnrichment
                    No data.
 NVD
                        NVD
                    Status : Modified
Published: 2020-02-25T16:15:10.780
Modified: 2024-11-21T04:44:25.847
Link: CVE-2019-5142
 Redhat
                        Redhat
                    No data.