{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/products/tn-4500b-series--2.1/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:moxa:tn-4500b_series_firmware:*:*:*:*:*:*:*:*"],"_cs_cves":[{"id":"CVE-2026-15579"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["TN-4500B Series (\u003c 2.1)"],"_cs_severities":["medium"],"_cs_tags":["vulnerability","industrial-control-systems","denial-of-service","network-device"],"_cs_type":"advisory","_cs_vendors":["Moxa"],"content_html":"\u003cp\u003eMoxa has released security advisory MPSA-252620 detailing an out-of-bounds write vulnerability, identified as CVE-2026-15579, affecting the TN-4500B Series of industrial Ethernet switches. The vulnerability exists due to improper handling of input within the device's management interface. A remote, unauthenticated attacker can exploit this flaw by sending specially crafted packets to the affected hardware. Successful exploitation results in an immediate denial-of-service (DoS) condition, rendering the network switch unavailable and potentially disrupting critical industrial communication flows. All versions of the TN-4500B series prior to version 2.1 are affected.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eThe impact of this vulnerability is significant, as it permits the disruption of industrial network infrastructure from a remote, unauthenticated position. Organizations relying on the TN-4500B series for critical communications or SCADA operations face an increased risk of operational downtime and loss of visibility into the managed network segments if the device enters a crashed state.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cp\u003ePrioritize the immediate patching of all vulnerable Moxa TN-4500B series switches.\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eUpgrade all affected units to firmware version 2.1 or later as specified in Moxa Security Advisory MPSA-252620.\u003c/li\u003e\n\u003cli\u003eRestrict network access to the switch management interfaces using firewalls or ACLs to prevent unauthenticated remote access to the vulnerable service until patching is complete.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-09-18T19:45:15Z","date_published":"2026-09-18T19:45:15Z","id":"https://feed.craftedsignal.io/briefs/2026-09-moxa-dos/","summary":"A critical out-of-bounds write vulnerability (CVE-2026-15579) in Moxa TN-4500B Series switches allows remote, unauthenticated attackers to cause a denial-of-service condition.","title":"Remote Denial of Service Vulnerability in Moxa TN-4500B Series","url":"https://feed.craftedsignal.io/briefs/2026-09-moxa-dos/"}],"language":"en","title":"CraftedSignal Threat Feed - TN-4500B Series (\u003c 2.1)","version":"https://jsonfeed.org/version/1.1"}