CVE-2026-73173: Advantech EKI-1242EIMS vulnerability
Nozomi Networks Labs identified a CWE-306: Missing Authentication for Critical Function vulnerability in the edgserver management protocol of Advantech EKI-1242EIMS in firmware version V1.06.01 that allows a remote unauthenticated attacker to invoke critical device-management functions, including network reconfiguration, reboot, reset, and firmware upgrade, by sending crafted requests to TCP port 5058.
Affected Software
Event History
Frequently Asked Questions
Which systems are exposed to this issue?
Advantech EKI-1242EIMS devices running firmware version V1.06.01 are affected when their edgserver management protocol is reachable on TCP port 5058. An attacker can exploit the issue remotely without authentication.
What could an attacker do after exploiting the vulnerable service?
A remote unauthenticated attacker can invoke critical device-management functions through crafted requests. Reported impacts include network reconfiguration, rebooting, resetting the device, and initiating firmware upgrades.