Description
Full details and mitigation steps are currently restricted and will be published at a later date.
Published: 2026-07-31
Score: 7.5 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability is a stack-based buffer overflow identified by CWE-121. The CVSS score of 7.5 indicates a moderate to high level of severity. Detailed technical information is currently withheld and will be released later, so the exact mechanisms for exploitation are unknown. Generally, stack overflows can enable arbitrary code execution or cause a denial‑of‑service, and the likely impact here is inferred to be similar, though the precise exploitation path remains unspecified.

Affected Systems

Affected vendors and product versions have not been disclosed beyond a generic placeholder. The only vendor referenced is Advantech; therefore, specific impacted systems cannot be identified from the current data, and users should consult the vendor’s advisories for version details.

Risk and Exploitability

The CVSS score of 7.5 signals a significant threat, yet the EPSS score of less than 1% indicates a low likelihood of active exploitation. The vulnerability is not listed in CISA’s KEV catalog, suggesting no known exploitation. The attack vector is not defined, so it is inferred that exploitation would require remote network access to deliver malformed data to the vulnerable component, but the exact conditions remain unknown until more details are published.

Generated by OpenCVE AI on August 3, 2026 at 10:15 UTC.

Remediation

Vendor Solution

Advantech, the product owner, has rolled out fixes for all reported vulnerabilities. Users and administrators of affected product versions are advised to update to the latest version.


OpenCVE Recommended Actions

  • Apply the latest patch released by Advantech to address all reported vulnerabilities
  • Monitor Advantech alerts for additional details and future patches
  • Until the patch is applied, implement network segmentation or firewall rules to isolate exposed services

Generated by OpenCVE AI on August 3, 2026 at 10:15 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sun, 02 Aug 2026 19:45:00 +0000

Type Values Removed Values Added
First Time appeared Advantech
Advantech adam-3600
Vendors & Products Advantech
Advantech adam-3600

Fri, 31 Jul 2026 21:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-121
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 31 Jul 2026 06:30:00 +0000

Type Values Removed Values Added
Description Successful exploitation of the vulnerability could allow an unauthenticated attacker to exploit a stack-based buffer overflow in the password functionality to conduct code execution when the SafeEnhancement feature is enabled. Full details and mitigation steps are currently restricted and will be published at a later date.
Title Stack-based Buffer Overflow Vulnerability tbc
References
Metrics cvssV4_0

{'score': 9.2, 'vector': 'CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


Fri, 31 Jul 2026 04:15:00 +0000

Type Values Removed Values Added
Description Successful exploitation of the vulnerability could allow an unauthenticated attacker to exploit a stack-based buffer overflow in the password functionality to conduct code execution when the SafeEnhancement feature is enabled.
Title Stack-based Buffer Overflow Vulnerability
References
Metrics cvssV4_0

{'score': 9.2, 'vector': 'CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

Advantech Adam-3600
cve-icon MITRE

Status: PUBLISHED

Assigner: CSA

Published:

Updated: 2026-07-31T19:48:20.994Z

Reserved: 2026-05-04T03:13:26.241Z

Link: CVE-2026-43829

cve-icon Vulnrichment

Updated: 2026-07-31T19:47:01.699Z

cve-icon NVD

Status : Received

Published: 2026-07-31T04:17:20.193

Modified: 2026-07-31T20:16:50.317

Link: CVE-2026-43829

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-03T10:30:18Z

Weaknesses
  • CWE-121

    Stack-based Buffer Overflow