Summary: Moxa has issued a security update for its PT switches to fix a critical vulnerability, identified as CVE-2024-12297, which allows attackers to bypass authentication. This flaw has a CVSS v4 score of 9.2, indicating a significant risk of unauthorized access. Affected users are advised to apply patches and implement security best practices to mitigate potential threats.
Affected: Moxa PT Switches (various models and firmware versions)
Keypoints :
- Vulnerability allows attackers to bypass authentication, potentially compromising device security.
- Impacting models include PT-508, PT-510, PT-7528, PT-7728, PT-7828, PT-G503, PT-G510, PT-G7728, and PT-G7828 with specified firmware versions.
- Users should restrict network access, enforce multi-factor authentication, and monitor for unusual activities while awaiting patches.
Source: https://thehackernews.com/2025/03/moxa-issues-fix-for-critical.html