Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 16 Sep 2026 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Nozomi Networks Labs identified a CWE-73: External Control of File Name or Path vulnerability in the backup-restore workflow of Advantech EKI-1242EIMS in firmware version V1.06.01 that allows a remote authenticated attacker to overwrite arbitrary files on the device filesystem by uploading a crafted backup archive through the web management interface. | |
| Weaknesses | CWE-73 | |
| References |
| |
| Metrics |
cvssV4_0
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: Nozomi
Published:
Updated: 2026-09-16T12:55:10.609Z
Reserved: 2026-08-11T09:36:13.097Z
Link: CVE-2026-73171
No data.
Status : Awaiting Analysis
Published: 2026-09-16T13:18:05.350
Modified: 2026-09-16T19:41:10.423
Link: CVE-2026-73171
No data.
OpenCVE Enrichment
No data.
