CVE CVE-2015-6480 Mappings

The MessageBrokerServlet servlet in Moxa OnCell Central Manager before 2.2 does not require authentication, which allows remote attackers to obtain administrative access via a command, as demonstrated by the addUserAndGroup action.

Mappings

Capability ID Capability Description Mapping Type ATT&CK ID ATT&CK Name
CVE-2015-6480 n/a uncategorized T1190 Exploit Public-Facing Application
CVE-2015-6480 n/a uncategorized T1059 Command and Scripting Interpreter