Impact
The vulnerability is an OS Command Injection flaw (CWE-78) in the web management interface of Advantech EKI-1242EIMS and EKI-1242IEIMS. An authenticated attacker can send specially crafted request parameters that are directly passed to the operating system, allowing arbitrary commands to be executed with root privileges. This elevates the potential impact to full system compromise, including data theft, modification, or availability disruption.
Affected Systems
Advantech EKI-1242EIMS and EKI-1242IEIMS firmware version V1.06.01 are affected. The flaw exists in the web management interface accessed remotely over the network.
Risk and Exploitability
The CVSS score of 8.6 indicates a high severity, while the EPSS score of less than 1% suggests a low current exploitation probability. The flaw requires remote authenticated access, which means it can be mitigated by disabling remote management for untrusted networks. It is not listed in CISA's KEV catalog, so there are no publicly known exploits yet. The attack vector is inferred to be a web-based request to the management interface, with the attacker needing valid credentials but no privileged network access beyond availability of the interface.
OpenCVE Enrichment