PT-2022-15757 · Advantech · Adam-3600+1
Published
2022-02-04
·
Updated
2022-02-09
·
CVE-2022-22987
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Product (affected versions not specified)
Description
The issue concerns a hardcoded private key located inside the project folder of the affected product. This could potentially allow an attacker to gain login access to the Web Server and perform additional actions.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Using Hardcoded Credentials
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Adam-3600
Adam-3600 Firmware