CVE Database
/

CVE-2025-0415

Back to search

CVE-2025-0415

Published: Apr 2, 2025

Modified: Apr 3, 2025

PUBLISHED

Description

A remote attacker with web administrator privileges can exploit the device’s web interface to execute arbitrary system commands through the NTP settings. Successful exploitation may result in the device entering an infinite reboot loop, leading to a total or partial denial of connectivity for downstream systems that rely on its network services.

VendorProductVersions

Moxa

EDF-G1002-BP Series

affected
1.0 - <= 3.14

Moxa

EDR-810 Series

affected
1.0 - <= 5.12.39

Moxa

EDR-8010 Series

affected
1.0 - <= 3.14

Moxa

EDR-G9004 Series

affected
1.0 - <= 3.14

Moxa

EDR-G9010 Series

affected
1.0 - <= 3.14

Moxa

OnCell G4302-LTE4 Series

affected
1.0 - <= 3.14

Moxa

TN-4900 Series

affected
1.0 - <= 3.14

Moxa

NAT-102 Series

affected
1.0 - <= 3.15

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now