PT-2022-15757 · Advantech · Adam-3600+1

Published

2022-02-04

·

Updated

2022-02-09

·

CVE-2022-22987

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Product (affected versions not specified)
Description The issue concerns a hardcoded private key located inside the project folder of the affected product. This could potentially allow an attacker to gain login access to the Web Server and perform additional actions.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Using Hardcoded Credentials

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2022-22987

Affected Products

Adam-3600
Adam-3600 Firmware