Null Pointer Dereference Vulnerability in Moxa AWK-3131A Wireless Access Point Firmware 1.1

Null Pointer Dereference Vulnerability in Moxa AWK-3131A Wireless Access Point Firmware 1.1

CVE-2016-8723 · HIGH Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

An exploitable null pointer dereference exists in the Web Application functionality of Moxa AWK-3131A Wireless Access Point running firmware 1.1. Any HTTP GET request not preceded by an '/' will cause a segmentation fault in the web server. An attacker can send any of a multitude of potentially unexpected HTTP get requests to trigger this vulnerability.

Learn more about our Web App Pen Testing.