Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 17 Sep 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Advantech
Advantech eki-1242eims Advantech eki-1242ieims |
|
| Vendors & Products |
Advantech
Advantech eki-1242eims Advantech eki-1242ieims |
Thu, 17 Sep 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 16 Sep 2026 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Nozomi Networks Labs identified a CWE-319: Cleartext Transmission of Sensitive Information vulnerability in the edgserver management protocol of Advantech EKI-1242EIMS in firmware version V1.06.01 that allows a network-adjacent passive observer to intercept management traffic and recover sensitive device identity and network metadata in cleartext. | |
| Weaknesses | CWE-319 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: Nozomi
Published:
Updated: 2026-09-17T18:57:11.067Z
Reserved: 2026-08-11T09:36:40.350Z
Link: CVE-2026-73174
Updated: 2026-09-17T18:57:05.935Z
Status : Awaiting Analysis
Published: 2026-09-16T13:18:05.880
Modified: 2026-09-17T19:16:55.857
Link: CVE-2026-73174
No data.
OpenCVE Enrichment
Updated: 2026-09-18T04:00:03Z