Hackers News Hackers News
  • CyberSecurity News
  • Threats
  • Attacks
  • Vulnerabilities
  • Breaches
  • Comparisons

Social Media

Hackers News Hackers News
  • CyberSecurity News
  • Threats
  • Attacks
  • Vulnerabilities
  • Breaches
  • Comparisons
Search the Site
Popular Searches:
technology Amazon AI
Recent Posts
TCLBANKER Malware Spreads Via WhatsApp Targets Users
May 9, 2026
NVIDIA Data Breach Exposes GeForce Users Reportedly Personal
May 9, 2026
Critical Microsoft 365 Copilot Flaws Ex Vulnerabilities Expose
May 9, 2026
Home/CyberSecurity News/Critical OpenSSH Flaw Exposes Moxa Switches Vulnerability Ethernet
CyberSecurity News

Critical OpenSSH Flaw Exposes Moxa Switches Vulnerability Ethernet

Moxa has issued a critical security advisory concerning CVE-2023-38408, a severe OpenSSH vulnerability impacting multiple Ethernet switch models. The flaw, with a CVSS 3.1 score of 9.8, allows...

Jennifer sherman
Jennifer sherman
January 13, 2026 2 Min Read
3 0

Moxa has issued a critical security advisory concerning CVE-2023-38408, a severe OpenSSH vulnerability impacting multiple Ethernet switch models.

The flaw, with a CVSS 3.1 score of 9.8, allows unauthenticated remote attackers to execute arbitrary code on vulnerable devices without requiring user interaction.

CVE-2023-38408 stems from an unreliable search path in the PKCS#11 feature of OpenSSH’s ssh-agent before 9.3p2.

CVE ID Severity CVSS Vulnerability Impact
CVE-2023-38408 Critical 9.8 SSH agent forwarding flaw Remote code execution

The vulnerability (CWE-428) is classified as an unquoted search path issue, enabling remote code execution when an SSH agent is forwarded to an attacker-controlled system.

This security flaw represents an incomplete fix for the earlier CVE-2016-10009 vulnerability.

Attackers can exploit this weakness to achieve complete system compromise, including breaches of confidentiality, integrity, and availability.

Affected Products

This vulnerability impacts multiple Moxa switch series.

Product Series Models Vulnerable / Affected Firmware Versions Action Required
EDS Series EDS-G4000, EDS-4008, EDS-4009, EDS-4012, EDS-4014, EDS-G4008, EDS-G4012, EDS-G4014 Firmware v4.1 or earlier Upgrade firmware
RKS Series RKS-G4000, RKS-G4028, RKS-G4028-L3 Firmware v5.0 or earlier Immediate attention/patch required

Moxa recommends users immediately contact Moxa Technical Support to obtain the latest security patches.

Organizations using affected EDS-series devices should upgrade to firmware version 4.1.58, while RKS-series users should upgrade to version 5.0.4.

Until patches can be deployed, Moxa advises implementing restrictive network access controls, such as firewalls and ACLs, to limit communication to trusted networks only.

Organizations should segregate operational networks from enterprise networks using VLANs or physical separation, turn off unnecessary network services, and avoid exposing devices directly to the Internet.

Implementing multi-factor authentication, role-based access control, and continuous network traffic monitoring for anomalous activity adds an additional layer of security.

Regular vulnerability assessments and firmware update schedules are essential components of a comprehensive defense strategy.

Disclaimer: HackersRadar reports on cybersecurity threats and incidents for informational and awareness purposes only. We do not engage in hacking activities, data exfiltration, or the hosting or distribution of stolen or leaked information. All content is based on publicly available sources.

Tags:

AttackBreachCVEExploitPatchSecurityVulnerability

Share Article

Jennifer sherman

Jennifer sherman

Jennifer is a cybersecurity news reporter covering data breaches, ransomware campaigns, and dark web markets. With a background in incident response, Jennifer provides unique insights into how organizations respond to cyber attacks and the evolving tactics of threat actors. Her reporting has covered major breaches affecting millions of users and has helped organizations understand emerging threats. Jennifer combines technical knowledge with investigative journalism to deliver in-depth coverage of cybersecurity incidents.

Previous Post

Anthropic’s Claude AI Helps Users Understand Medical Records

Next Post

Multi-Stage Windows Malware Uses PowerShell from Remote Host

No Comment! Be the first one.

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Popular Posts
PamDOORa Backdoor Attacks Linux, Attacking Systems
May 8, 2026
Škoda Online Shop Security Incident Exposes Customers Data
May 8, 2026
Hackers Steal Crypto & Passwords via Fake OpenClaw Installer
May 8, 2026
Top Authors
Marcus Rodriguez
Marcus Rodriguez
Sarah simpson
Sarah simpson
Jennifer sherman
Jennifer sherman
Let's Connect
156k
2.25m
285k

Related Posts

Jennifer sherman
By Jennifer sherman
Threats

GlassWorm Attacks macOS via Malicious VS Code…

January 1, 2026
Emy Elsamnoudy
By Emy Elsamnoudy
Attacks

ClickFix Attack Hides Malicious Code via Stegan Security

January 1, 2026
Sarah simpson
By Sarah simpson
Vulnerabilities

MongoBleed Detector Tool Detects Critical MongoDB CVE-

January 1, 2026
Emy Elsamnoudy
By Emy Elsamnoudy
Breaches

Conti Ransomware Gang Leaders & Infrastructure Exposed

January 1, 2026
Hackers News Hackers News
  • [email protected]

Quick Links

  • Contact Us
  • Privacy Policy
  • Terms of service

Categories

Attacks
Breaches
Comparisons
CyberSecurity News
Threats
Vulnerabilities

Let's keep in touch

receive fresh updates and breaking cyber news every day and week!

All Rights Reserved by HackersRadar ©2026

Follow Us