A CWE-306 "Missing Authentication for Critical Function" was discovered affecting...
Vulnerability Description
A CWE-306 "Missing Authentication for Critical Function" was discovered affecting the following devices manufactured by Advantech: EKI-6333AC-2G (<= 1.6.3), EKI-6333AC-2GD (<= v1.6.3) and EKI-6333AC-1GPO (<= v1.2.1). The vulnerability can be exploited by remote unauthenticated users capable of interacting with the default "edgserver" service enabled on the access point.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-50375
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Diego Zaffaroni of Nozomi Networks found this bug during a security research activity.
More from Advantech
View All →Affected Vendor
Advantech
View all reports →