Impact
The vulnerability is an uncontrolled resource consumption flaw in the OPC UA gateway component of Advantech's EKI-1242EIMS firmware V1.06.01. An unauthenticated, adjacent attacker can open multiple anonymous sessions, which exhausts the server’s session pool and blocks all legitimate OPC UA clients from connecting. The result is a complete denial of service to the gateway and any systems that depend on it for OPC UA traffic. This flaw is identified as CWE‑400.
Affected Systems
The affected systems are Advantech EKI‑1242EIMS and EKI‑1242IEIMS gateways running firmware version V1.06.01. The flaw resides in the gateway’s OPC UA server, which is used to broker communication with industrial control equipment.
Risk and Exploitability
The CVSS score of 7.1 indicates a high severity with potential for service disruption. The EPSS score of less than 1% suggests a very low probability of exploitation at this time, and the catalog does not list the vulnerability as a known exploited vulnerability. The likely attack vector is local or adjacent, where an unauthenticated attacker can connect to the OPC UA endpoint. Because the flaw does not require authentication, an attacker who can communicate on the network segment that hosts the gateway can trigger the denial of service.
OpenCVE Enrichment