VYPR
Unrated severityNVD Advisory· Published Nov 26, 2024· Updated Nov 26, 2024

CVE-2024-50375

CVE-2024-50375

Description

A CWE-306 "Missing Authentication for Critical Function" was discovered affecting the following devices manufactured by Advantech: EKI-6333AC-2G (<= 1.6.3), EKI-6333AC-2GD (<= v1.6.3) and EKI-6333AC-1GPO (<= v1.2.1). The vulnerability can be exploited by remote unauthenticated users capable of interacting with the default "edgserver" service enabled on the access point.

Affected products

4
  • Advantech/EKI-6333AC-2Gllm-fuzzy4 versions
    <=1.6.3+ 3 more
    • (no CPE)range: <=1.6.3
    • (no CPE)range: 0
    • (no CPE)range: 0
    • (no CPE)range: 0

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.