CVE-2026-79698
Received Received - Intake

Command Injection in Advantech WISE-6610 Series

Vulnerability report for CVE-2026-79698, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-09-07

Last updated on: 2026-09-07

Assigner: VulDB

Description

A vulnerability was identified in Advantech WISE-6610-NB, WISE-6610-EB, WISE-6610-TB, WISE-6610-JB, WISE-6610-CB, WISE-6610-EL-NB, WISE-6610-EL-EB, WISE-6610-EL-TB, WISE-6610-EL-JB, WISE-6610-EL-CB, WISE-6610P-DEA, WISE-6610P-DNA and WISE-6610P-DTA 1.2.1_20251110. This vulnerability affects the function nodered_lib_apply of the component Node-RED Library. Such manipulation of the argument act leads to command injection. The attack can be launched remotely. The exploit is publicly available and might be used. Upgrading to version 1.2.4_20260821 is able to resolve this issue. It is advisable to upgrade the affected component. The vendor was contacted early, responded in a very professional manner and quickly released a fixed version of the affected product.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-09-07
Last Modified
2026-09-07
Generated
2026-09-07
AI Q&A
2026-09-07
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 39 associated CPEs
Vendor Product Version / Range
advantech wise-6610-nb to 1.2.4_20260821 (inc)
advantech wise-6610-eb to 1.2.4_20260821 (inc)
advantech wise-6610-tb to 1.2.4_20260821 (inc)
advantech wise-6610-jb to 1.2.4_20260821 (inc)
advantech wise-6610-cb to 1.2.4_20260821 (inc)
advantech wise-6610-el-nb to 1.2.4_20260821 (inc)
advantech wise-6610-el-eb to 1.2.4_20260821 (inc)
advantech wise-6610-el-tb to 1.2.4_20260821 (inc)
advantech wise-6610-el-jb to 1.2.4_20260821 (inc)
advantech wise-6610-el-cb to 1.2.4_20260821 (inc)
advantech wise-6610p-dea to 1.2.4_20260821 (inc)
advantech wise-6610p-dna to 1.2.4_20260821 (inc)
advantech wise-6610p-dta to 1.2.4_20260821 (inc)
advantech wise-6610-nb 1.2.1_20251110
advantech wise-6610-nb 1.2.4_20260821
advantech wise-6610-eb 1.2.1_20251110
advantech wise-6610-eb 1.2.4_20260821
advantech wise-6610-tb 1.2.1_20251110
advantech wise-6610-tb 1.2.4_20260821
advantech wise-6610-jb 1.2.1_20251110
advantech wise-6610-jb 1.2.4_20260821
advantech wise-6610-cb 1.2.1_20251110
advantech wise-6610-cb 1.2.4_20260821
advantech wise-6610-el-nb 1.2.1_20251110
advantech wise-6610-el-nb 1.2.4_20260821
advantech wise-6610-el-eb 1.2.1_20251110
advantech wise-6610-el-eb 1.2.4_20260821
advantech wise-6610-el-tb 1.2.1_20251110
advantech wise-6610-el-tb 1.2.4_20260821
advantech wise-6610-el-jb 1.2.1_20251110
advantech wise-6610-el-jb 1.2.4_20260821
advantech wise-6610-el-cb 1.2.1_20251110
advantech wise-6610-el-cb 1.2.4_20260821
advantech wise-6610p-dea 1.2.1_20251110
advantech wise-6610p-dea 1.2.4_20260821
advantech wise-6610p-dna 1.2.1_20251110
advantech wise-6610p-dna 1.2.4_20260821
advantech wise-6610p-dta 1.2.1_20251110
advantech wise-6610p-dta 1.2.4_20260821

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-77 The product constructs all or part of a command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended command when it is sent to a downstream component.
CWE-74 The product constructs all or part of a command, data structure, or record using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify how it is parsed or interpreted when it is sent to a downstream component.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability is a command injection flaw in Advantech WISE-6610 series devices running Node-RED Library version 1.2.1_20251110. It allows remote attackers to execute arbitrary commands by manipulating the 'act' argument in the nodered_lib_apply function. A patch is available in version 1.2.4_20260821.

Detection Guidance

This vulnerability involves command injection in the Node-RED Library function nodered_lib_apply. To detect it, check if your Advantech WISE-6610 device is running version 1.2.1_20251110 or earlier. Use commands like 'curl -X GET http://<device-ip>/api/version' to verify the firmware version. Inspect Node-RED flows for suspicious 'act' parameter usage in HTTP requests.

Impact Analysis

An attacker could gain control of the affected device, steal sensitive data, disrupt operations, or use it as a pivot point to attack other systems. The high CVSS scores indicate severe impact on confidentiality, integrity, and availability.

Compliance Impact

The vulnerability allows remote command injection via manipulation of the 'act' argument in the Node-RED Library function, which could lead to unauthorized access or data exfiltration. This could potentially violate GDPR's data protection requirements or HIPAA's security rules if sensitive data is exposed or altered.

Mitigation Strategies

Upgrade the affected Advantech WISE devices to version 1.2.4_20260821 or later to resolve the command injection vulnerability in the Node-RED Library component.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-79698. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart