Impact
An OS command injection flaw in the edgserver management service of Advantech EKI-1242 firmware enables an attacker to send specially crafted messages to TCP port 5058. The vulnerability, classified as CWE‑78, permits remote unauthenticated users to execute arbitrary operating‑system commands with root privileges, effectively granting complete control over the device. The impact is a full compromise of the affected system, including confidentiality, integrity, and availability losses.
Affected Systems
The flaw exists in Advantech EKI-1242EIMS and Advantech EKI-1242IEIMS devices running firmware version V1.06.01. Only these specific product releases are known to be affected; other firmware versions or models have not been reported as vulnerable.
Risk and Exploitability
The CVSS score of 9.3 indicates critical severity, and the EPSS score of 2% suggests a moderate likelihood of exploitation in the wild. The vulnerability is not listed in CISA’s Known Exploited Vulnerabilities catalog. Attackers can exploit the flaw over the network by targeting port 5058 without authentication, making it highly attractive for remote attack campaigns.
OpenCVE Enrichment