CVE-2024-37187

CVSS 3.1 Score 5.7 of 10 (medium)

Details

Published Sep 27, 2024
Updated: Oct 7, 2024
CWE ID 522
CWE ID 261

Summary

CVE-2024-37187 is a vulnerability affecting Advantech ADAM-5550 devices. The issue lies in the sharing of user credentials, which are encrypted using only base 64 encoding. This level of encryption is considered weak, increasing the risk of unauthorized access to these credentials. Hackers could potentially intercept and decode the credentials, putting the affected systems at risk of unauthorized access and potential data breaches. It is recommended that users of the ADAM-5550 devices update to the latest firmware or implement stronger encryption methods for their credentials to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share