CERT-FR published two advisories covering vulnerabilities in Moxa products, warning that the flaws could let attackers escalate privileges and undermine core security controls. One notice said successful exploitation could also affect data confidentiality and data integrity, raising concern for industrial and networked environments where Moxa equipment is commonly deployed.
A separate CERT-FR notice reported another Moxa vulnerability that could allow an attacker to bypass the security policy. The advisories did not provide further technical details in the referenced content, including affected models, CVE identifiers, or specific remediation steps, leaving organizations to monitor vendor and national CERT guidance closely for product impact and patch information.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
3 events from the most recent confirmed update back to the earliest known activity.
CERT-FR published a new advisory covering multiple vulnerabilities in Moxa products. The notice said the flaws could allow a remote attacker to cause denial of service, compromise data confidentiality, and bypass security policy controls.
CERT-FR published a separate advisory about another vulnerability in Moxa products that could allow an attacker to bypass the security policy. The available content did not include affected models, a CVE, or remediation details.
CERT-FR published an advisory about a vulnerability in Moxa products that could allow privilege escalation and affect data confidentiality and integrity.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
3 references tracked. Mallory keeps watching after this page renders.
cert.ssi.gouv.fr
Open sourcecert.ssi.gouv.fr
Open sourcecert.ssi.gouv.fr
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.