Moxa published security advisories for its industrial computer DA Series indicating that multiple vulnerabilities in underlying Intel firmware components can impact affected devices, including conditions leading to remote denial of service, privilege escalation, and potential confidentiality impacts. Affected systems include DA-682C (BIOS versions prior to v1.6), DA-820C (prior to v1.3), and DA-820E (as listed by CERT-FR), with the Canadian Centre for Cyber Security also flagging DA Series BIOS exposure broadly and calling out DA-682C BIOS v1.5 and earlier and DA-820C BIOS v1.2 and earlier.
The advisories map to Intel security issues including Intel BIOS firmware DoS (INTEL-SA-00813) and multiple vulnerabilities in Intel CSME/AMT (INTEL-SA-00391, INTEL-SA-00709). CERT-FR’s notice references related CVEs (including CVE-2020-8747, CVE-2020-8749, CVE-2020-8752, and CVE-2022-28697) and directs organizations to apply vendor-provided BIOS updates and mitigations from Moxa’s bulletins (mpsa-256821, mpsa-256822, mpsa-256823) to reduce exposure in operational technology environments.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
3 events from the most recent confirmed update back to the earliest known activity.
On the same day as Moxa's advisories, CERT-FR and the Canadian Centre for Cyber Security published alerts warning about the vulnerabilities and directing administrators to review vendor guidance and apply updates. Their notices identified affected Moxa DA Series devices and summarized the potential impacts of the flaws.
Moxa published security advisories MPSA-256821, MPSA-256822, and MPSA-256823 addressing multiple BIOS/firmware vulnerabilities affecting DA Series industrial products. The advisories covered affected DA Series BIOS versions and provided updates and mitigation guidance for flaws including Intel-SA-00813, Intel-SA-00391, and Intel-SA-00709.
CERT-FR indicates a new notification campaign began for multiple vulnerabilities affecting Moxa products, including DA-682C, DA-820C, and DA-820E systems. The issues were tied to Intel BIOS firmware and CSME/AMT components and could enable confidentiality impacts, remote denial of service, and privilege escalation.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.