Moxa MXview Network Management Software
No sign of exploitation. No public exploitation artifact known so far.
Moxa MXview Network Management Software has a flaw that allows attackers to create or overwrite critical files on the system, potentially enabling them to execute malicious code. This happens because the software doesn't properly validate file paths, allowing attackers to access directories they shouldn't.
A path traversal vulnerability (CWE-22) in Moxa MXview 3.x through 3.2.2 permits unauthenticated or low-privileged attackers to create or overwrite arbitrary files in protected directories by manipulating file path inputs. Exploitation could result in arbitrary code execution through overwriting executables or libraries, with a CVSS score of 7.5 indicating high severity.