8.8
CVSSv3

CVE-2023-2573

Published: 08/05/2023 Updated: 12/05/2023
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Advantech EKI-1524, EKI-1522, EKI-1521 devices up to and including 1.21 are affected by an command injection vulnerability in the NTP server input field, which can be triggered by authenticated users via a crafted POST request.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

advantech eki-1521_firmware

advantech eki-1522_firmware

advantech eki-1524_firmware

Exploits

Advantech EKI-1524-CE series, EKI-1522 series, and EKI-1521 series suffer from command injection and buffer overflow vulnerabilities ...