Advantech Products Session Management Vulnerability Blocking User Logins
Vulnerability
A vulnerability in certain Advantech products allows an attacker to exhaust all available session slots, preventing legitimate users from logging in. This issue arises from a flaw in session management that can be exploited to block access to the product.
Impact
Exploitation of this vulnerability can lead to remote denial-of-service by causing legitimate users to be unable to access the product.
Remediation
Users and administrators of affected Advantech products are advised to enable the Security Mode feature, which restricts access to unsecured web interfaces and disables unnecessary services. This vulnerability can also be addressed by updating to the latest firmware version A2.02 B00, which includes the Security Mode feature and other important fixes.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
