📦

adam-5630

Vendor: advantech

Actively Exploited 0 CISA KEV List
PoC / Exploits 0 Code Available
Total RCEs 0 Remote Access
Total CVEs 3 Total Indexed
Avg. EPSS 0.27% Exploit Prob.
Latest CVE CVE-2024-39275 Sep 27

Security Vulnerability Index

Page 1 / 1
8.5 CVSS

Cookies of authenticated Advantech ADAM-5630 users remain as active valid cookies when a session is closed. Forging requests with a legitimate cookie, even if the session was terminated, allows an unauthorized attacker to act with the same level of privileges of the legitimate user.

EPSS: 0.39%
6.9 CVSS

Advantech ADAM-5630 shares user credentials plain text between the device and the user source device during the login process.

EPSS: 0.22%
8.5 CVSS

Advantech ADAM-5630 contains a cross-site request forgery (CSRF) vulnerability. It allows an attacker to partly circumvent the same origin policy, which is designed to prevent different websites from interfering with each other.

EPSS: 0.21%