Advantech EKI-1524, EKI-1522, EKI-1521 devices through 1.21 are affected by an command injection vulnerability in the NTP server input field, which can be triggered by authenticated users via a crafted POST request.
                
            References
                    Configurations
                    Configuration 1 (hide)
| AND | 
            
            
 
  | 
    
Configuration 2 (hide)
| AND | 
            
            
 
  | 
    
Configuration 3 (hide)
| AND | 
            
            
 
  | 
    
History
                    13 Feb 2025, 17:16
| Type | Values Removed | Values Added | 
|---|---|---|
| Summary | (en) Advantech EKI-1524, EKI-1522, EKI-1521 devices through 1.21 are affected by an command injection vulnerability in the NTP server input field, which can be triggered by authenticated users via a crafted POST request. | 
Information
                Published : 2023-05-08 13:15
Updated : 2025-02-13 17:16
NVD link : CVE-2023-2573
Mitre link : CVE-2023-2573
CVE.ORG link : CVE-2023-2573
JSON object : View
Products Affected
                advantech
- eki-1522_firmware
 - eki-1521_firmware
 - eki-1524_firmware
 - eki-1524
 - eki-1522
 - eki-1521
 
