Moxa is a vendor of industrial networking equipment, including Ethernet switches used in OT environments.
Overview
Moxa is a vendor of industrial networking equipment, including Ethernet switches used in OT environments. A critical OpenSSH vulnerability has been disclosed that exposes Moxa Ethernet switches to remote code execution, creating a high-risk scenario for industrial networks and critical infrastructure where these devices are deployed.
Related Threat Clusters
-
Cyberattack on Polish Energy Sector Exploits Private APN Vulnerability
In December 2025, hackers breached a Polish combined heat and power (CHP) plant using a private Access Point Name (APN) to access the operational technology network. The attack, attributed to the Russian Electrum threat…
8 articles · Updated August 10, 2026 -
Critical OpenSSH Vulnerability in Moxa Ethernet Switches Allows Remote Code Execution
Moxa has issued a security advisory for CVE-2023-38408, a critical vulnerability in OpenSSH that affects multiple Ethernet switch models. With a CVSS score of 9.8, this flaw enables unauthenticated remote attackers to…
2 articles · Updated January 13, 2026 -
ICS Patch Tuesday: Siemens, Schneider, Moxa, Mitsubishi Electric Address Vulnerabilities
On March 11, 2026, Siemens, Schneider Electric, Moxa, and Mitsubishi Electric released advisories addressing vulnerabilities in their industrial control systems (ICS). These updates are part of the regular Patch Tuesday…
1 article · Updated March 11, 2026
Recent Intelligence Reports
- Hackers breached a small Polish energy plant via private APN last year — Bleepingcomputer · August 10, 2026
- ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Moxa, Mitsubishi Electric — Securityweek · March 11, 2026
- Critical OpenSSH Vulnerability Exposes Moxa Ethernet Switches to Remote Code Execution — Cybersecuritynews · January 13, 2026