First published: Fri Sep 27 2024(Updated: )
Advantech ADAM-5550 share user credentials with a low level of encryption, consisting of base 64 encoding.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Advantech ADAM 5550 | ||
Advantech ADAM 5550 |
ADAM-5550 is currently being phased out, and Advantech strongly recommends all ADAM-5550 users upgrade to ADAM-5630 firmware version 2.5.2 or higher.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-37187 has a medium severity rating due to the exposure of user credentials with weak encryption.
To address CVE-2024-37187, update the Advantech ADAM-5550 firmware to the latest version that resolves the credential storage issue.
The risks associated with CVE-2024-37187 include unauthorized access to the system due to weakly encrypted user credentials.
CVE-2024-37187 affects the Advantech ADAM-5550 and its firmware versions.
CVE-2024-37187 can be exploited relatively easily due to the use of base64 encoding for credential storage.