PT-2026-49654 · Moxa · Nport W2250A-W4+1

·

CVE-2026-10829

·

Published

2026-06-16

·

Updated

2026-06-18

CVSS v4.0

8.6

High

VectorAV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions NPort W2150A-W4/W2250A-W4 Series versions prior to 1.5.1
Description A stack-based buffer overflow occurs due to insufficient input validation of user-supplied input in the Server location parameter on the Basic settings page. An authenticated attacker can send crafted input to the web service to cause memory corruption, potentially leading to remote code execution with root privileges on the target system.
Recommendations Update to version 1.5.1.

Fix

RCE

Stack Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-10829

Affected Products

Nport W2150A-W4
Nport W2250A-W4