Junglewise Threat Intelligence

CVE-2026-73163: Advantech EKI-1242IEIMS OS command injection in web management interface

CVE-2026-73163 · Severity: info · CVSS 8.6 · Published 2026-09-16

Executive brief

Advantech EKI-1242IEIMS is an industrial network device with a web-based management interface. A remote authenticated attacker can execute arbitrary OS commands with root privileges by sending crafted requests, potentially gaining full control of the device and disrupting critical industrial operations or accessing sensitive data.

Technical details

The vulnerability is a CWE-78 OS command injection flaw in the web management interface of Advantech EKI-1242IEIMS firmware V1.06.01. The vulnerable component fails to properly neutralize special characters in request parameters before passing them to OS command execution, allowing an authenticated remote attacker to inject arbitrary commands. Attack requires network access to the web interface and prior authentication. An attacker can achieve arbitrary command execution with root privileges. The vendor has released a fix in firmware version 2.00.01.

Affected products

  • Advantech EKI-1242IEIMS V1.06.01
  • Advantech EKI-1242EIMS V1.06.01

Timeline

  • 2026-09-16: disclosed
  • 2026-09-04: patched: Patch available as firmware version 2.00.01

References

Related threats