Code Injection Vulnerability in Advantech EKI-1242IEIMS Firmware
CVE-2026-73166
8.6HIGH
Key Information:
- Vendor
Advantech
- Vendor
- CVE Published:
- 16 September 2026
What is CVE-2026-73166?
A code injection vulnerability has been identified in the web management interface of the Advantech EKI-1242IEIMS. This flaw arises from improper control of code generation, allowing a remote authenticated attacker to execute arbitrary commands on the device with root privileges, potentially compromising the system’s integrity and security.
Affected Version(s)
EKI-1242EIMS 0 <= 1.06.01
EKI-1242IEIMS 0 <= 1.06.01
