Description
An out-of-bounds write vulnerability exists in some of the Ethernet switches because of improper validation of the username field length during Web login processing. This may allow a remote attacker to submit a specially crafted overly long input, triggering a buffer overflow that can cause the authentication process to crash and result in a Denial of Service (DoS) attack.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
Vendor Solution
Refer to Moxa's security advisory: https://www.moxa.com/en/support/product-support/security-advisory/mpsa-252620-cve-2026-15579-out-of-bounds-write-vulnerability-in-ethernet-switch
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Fri, 18 Sep 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An out-of-bounds write vulnerability exists in some of the Ethernet switches because of improper validation of the username field length during Web login processing. This may allow a remote attacker to submit a specially crafted overly long input, triggering a buffer overflow that can cause the authentication process to crash and result in a Denial of Service (DoS) attack. | |
| First Time appeared |
Moxa
Moxa tn-4500b Series |
|
| Weaknesses | CWE-787 | |
| CPEs | cpe:2.3:a:moxa:tn-4500b_series:*:*:*:*:*:*:*:* cpe:2.3:a:moxa:tn-4500b_series:2.1:*:*:*:*:*:*:* |
|
| Vendors & Products |
Moxa
Moxa tn-4500b Series |
|
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: Moxa
Published:
Updated: 2026-09-18T09:32:59.993Z
Reserved: 2026-07-13T09:51:45.547Z
Link: CVE-2026-15579
No data.
No data.
No data.
OpenCVE Enrichment
No data.
Weaknesses
