advantech CVE Vulnerabilities & Metrics

Focus on advantech vulnerabilities and metrics.

Last updated: 08 Mar 2025, 23:25 UTC

About advantech Security Exposure

This page consolidates all known Common Vulnerabilities and Exposures (CVEs) associated with advantech. We track both calendar-based metrics (using fixed periods) and rolling metrics (using gliding windows) to give you a comprehensive view of security trends and risk evolution. Use these insights to assess risk and plan your patching strategy.

For a broader perspective on cybersecurity threats, explore the comprehensive list of CVEs by vendor and product. Stay updated on critical vulnerabilities affecting major software and hardware providers.

Global CVE Overview

Total advantech CVEs: 246
Earliest CVE date: 06 Jan 2009, 17:30 UTC
Latest CVE date: 22 Nov 2024, 20:15 UTC

Latest CVE reference: CVE-2023-52335

Rolling Stats

30-day Count (Rolling): 0
365-day Count (Rolling): 3

Calendar-based Variation

Calendar-based Variation compares a fixed calendar period (e.g., this month versus the same month last year), while Rolling Growth Rate uses a continuous window (e.g., last 30 days versus the previous 30 days) to capture trends independent of calendar boundaries.

Variations & Growth

Month Variation (Calendar): 0%
Year Variation (Calendar): -80.0%

Month Growth Rate (30-day Rolling): 0.0%
Year Growth Rate (365-day Rolling): -80.0%

Monthly CVE Trends (current vs previous Year)

Annual CVE Trends (Last 20 Years)

Critical advantech CVEs (CVSS ≥ 9) Over 20 Years

CVSS Stats

Average CVSS: 5.9

Max CVSS: 10.0

Critical CVEs (≥9): 36

CVSS Range vs. Count

Range Count
0.0-3.9 34
4.0-6.9 145
7.0-8.9 81
9.0-10.0 36

CVSS Distribution Chart

Top 5 Highest CVSS advantech CVEs

These are the five CVEs with the highest CVSS scores for advantech, sorted by severity first and recency.

All CVEs for advantech

CVE-2023-52335 advantech vulnerability CVSS: 0 22 Nov 2024, 20:15 UTC

Advantech iView ConfigurationServlet SQL Injection Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Advantech iView. Authentication is not required to exploit this vulnerability. The specific flaw exists within the ConfigurationServlet servlet, which listens on TCP port 8080 by default. When parsing the column_value element, the process does not properly validate a user-supplied string before using it to construct SQL queries. An attacker can leverage this vulnerability to disclose stored credentials, leading to further compromise. Was ZDI-CAN-17863.

CVE-2024-38308 advantech vulnerability CVSS: 0 27 Sep 2024, 18:15 UTC

Advantech ADAM 5550's web application includes a "logs" page where all the HTTP requests received are displayed to the user. The device doesn't correctly neutralize malicious code when parsing HTTP requests to generate page output.

CVE-2024-37187 advantech vulnerability CVSS: 0 27 Sep 2024, 18:15 UTC

Advantech ADAM-5550 share user credentials with a low level of encryption, consisting of base 64 encoding.

CVE-2023-5642 advantech vulnerability CVSS: 0 18 Oct 2023, 16:15 UTC

Advantech R-SeeNet v2.4.23 allows an unauthenticated remote attacker to read from and write to the snmpmon.ini file, which contains sensitive information.

CVE-2023-4215 advantech vulnerability CVSS: 0 17 Oct 2023, 00:15 UTC

Advantech WebAccess version 9.1.3 contains an exposure of sensitive information to an unauthorized actor vulnerability that could leak user credentials.

CVE-2023-4203 advantech vulnerability CVSS: 0 08 Aug 2023, 11:15 UTC

Advantech EKI-1524, EKI-1522, EKI-1521 devices through 1.21 are affected by a Stored Cross-Site Scripting vulnerability, which can be triggered by authenticated users in the ping tool of the web-interface.

CVE-2023-4202 advantech vulnerability CVSS: 0 08 Aug 2023, 11:15 UTC

Advantech EKI-1524, EKI-1522, EKI-1521 devices through 1.21 are affected by a Stored Cross-Site Scripting vulnerability, which can be triggered by authenticated users in the device name field of the web-interface.

CVE-2023-1437 advantech vulnerability CVSS: 0 02 Aug 2023, 23:15 UTC

All versions prior to 9.1.4 of Advantech WebAccess/SCADA are vulnerable to use of untrusted pointers. The RPC arguments the client sent could contain raw memory pointers for the server to use as-is. This could allow an attacker to gain access to the remote file system and the ability to execute commands and overwrite files.

CVE-2023-3983 advantech vulnerability CVSS: 0 31 Jul 2023, 19:15 UTC

An authenticated SQL injection vulnerability exists in Advantech iView versions prior to v5.7.4 build 6752. An authenticated remote attacker can bypass checks in com.imc.iview.utils.CUtils.checkSQLInjection() to perform blind SQL injection.

CVE-2023-3256 advantech vulnerability CVSS: 0 22 Jun 2023, 17:15 UTC

Advantech R-SeeNet versions 2.4.22 allows low-level users to access and load the content of local files.

CVE-2023-2611 advantech vulnerability CVSS: 0 22 Jun 2023, 17:15 UTC

Advantech R-SeeNet versions 2.4.22 is installed with a hidden root-level user that is not available in the users list. This hidden user has a password that cannot be changed by users.

CVE-2023-2866 advantech vulnerability CVSS: 0 07 Jun 2023, 21:15 UTC

If an attacker can trick an authenticated user into loading a maliciously crafted .zip file onto Advantech WebAccess version 8.4.5, a web shell could be used to give the attacker full control of the SCADA server.

CVE-2023-32628 advantech vulnerability CVSS: 0 06 Jun 2023, 00:15 UTC

In Advantech WebAccss/SCADA v9.1.3 and prior, there is an arbitrary file upload vulnerability that could allow an attacker to modify the file extension of a certificate file to ASP when uploading it, which can lead to remote code execution.

CVE-2023-32540 advantech vulnerability CVSS: 0 06 Jun 2023, 00:15 UTC

In Advantech WebAccss/SCADA v9.1.3 and prior, there is an arbitrary file overwrite vulnerability, which could allow an attacker to overwrite any file in the operating system (including system files), inject code into an XLS file, and modify the file extension, which could lead to arbitrary code execution.

CVE-2023-22450 advantech vulnerability CVSS: 0 06 Jun 2023, 00:15 UTC

In Advantech WebAccss/SCADA v9.1.3 and prior, there is an arbitrary file upload vulnerability that could allow an attacker to upload an ASP script file to a webserver when logged in as manager user, which can lead to arbitrary code execution.

CVE-2023-2575 advantech vulnerability CVSS: 0 08 May 2023, 13:15 UTC

Advantech EKI-1524, EKI-1522, EKI-1521 devices through 1.21 are affected by a Stack-based Buffer Overflow vulnerability, which can be triggered by authenticated users via a crafted POST request.

CVE-2023-2574 advantech vulnerability CVSS: 0 08 May 2023, 13:15 UTC

Advantech EKI-1524, EKI-1522, EKI-1521 devices through 1.21 are affected by an command injection vulnerability in the device name input field, which can be triggered by authenticated users via a crafted POST request.

CVE-2023-2573 advantech vulnerability CVSS: 0 08 May 2023, 13:15 UTC

Advantech EKI-1524, EKI-1522, EKI-1521 devices through 1.21 are affected by an command injection vulnerability in the NTP server input field, which can be triggered by authenticated users via a crafted POST request.

CVE-2022-3387 advantech vulnerability CVSS: 0 27 Oct 2022, 21:15 UTC

Advantech R-SeeNet Versions 2.4.19 and prior are vulnerable to path traversal attacks. An unauthorized attacker could remotely exploit vulnerable PHP code to delete .PDF files.

CVE-2022-3386 advantech vulnerability CVSS: 0 27 Oct 2022, 21:15 UTC

Advantech R-SeeNet Versions 2.4.17 and prior are vulnerable to a stack-based buffer overflow. An unauthorized attacker can use an outsized filename to overflow the stack buffer and enable remote code execution.

CVE-2022-3385 advantech vulnerability CVSS: 0 27 Oct 2022, 21:15 UTC

Advantech R-SeeNet Versions 2.4.17 and prior are vulnerable to a stack-based buffer overflow. An unauthorized attacker can remotely overflow the stack buffer and enable remote code execution.

CVE-2022-3323 advantech vulnerability CVSS: 0 27 Sep 2022, 23:15 UTC

An SQL injection vulnerability in Advantech iView 5.7.04.6469. The specific flaw exists within the ConfigurationServlet endpoint, which listens on TCP port 8080 by default. An unauthenticated remote attacker can craft a special column_value parameter in the setConfiguration action to bypass checks in com.imc.iview.utils.CUtils.checkSQLInjection() to perform SQL injection. For example, the attacker can exploit the vulnerability to retrieve the iView admin password.

CVE-2022-2143 advantech vulnerability CVSS: 0 22 Jul 2022, 15:15 UTC

The affected product is vulnerable to two instances of command injection, which may allow an attacker to remotely execute arbitrary code.

CVE-2022-2142 advantech vulnerability CVSS: 0 22 Jul 2022, 15:15 UTC

The affected product is vulnerable to a SQL injection with high attack complexity, which may allow an unauthorized attacker to disclose information.

CVE-2022-2139 advantech vulnerability CVSS: 0 22 Jul 2022, 15:15 UTC

The affected product is vulnerable to directory traversal, which may allow an attacker to access unauthorized files and execute arbitrary code.

CVE-2022-2138 advantech vulnerability CVSS: 0 22 Jul 2022, 15:15 UTC

The affected product is vulnerable due to missing authentication, which may allow an attacker to read or modify sensitive data and execute arbitrary code, resulting in a denial-of-service condition.

CVE-2022-2137 advantech vulnerability CVSS: 0 22 Jul 2022, 15:15 UTC

The affected product is vulnerable to two SQL injections that require high privileges for exploitation and may allow an unauthorized attacker to disclose information

CVE-2022-2136 advantech vulnerability CVSS: 0 22 Jul 2022, 15:15 UTC

The affected product is vulnerable to multiple SQL injections that require low privileges for exploitation and may allow an unauthorized attacker to disclose information.

CVE-2022-2135 advantech vulnerability CVSS: 0 22 Jul 2022, 15:15 UTC

The affected product is vulnerable to multiple SQL injections, which may allow an unauthorized attacker to disclose information.

CVE-2022-22987 advantech vulnerability CVSS: 7.5 04 Feb 2022, 23:15 UTC

The affected product has a hardcoded private key available inside the project folder, which may allow an attacker to achieve Web Server login and perform further actions.

CVE-2021-40397 advantech vulnerability CVSS: 9.3 28 Jan 2022, 20:15 UTC

A privilege escalation vulnerability exists in the installation of Advantech WISE-PaaS/OTA Server 3.0.9. A specially-crafted file can be replaced in the system to escalate privileges to NT SYSTEM authority. An attacker can provide a malicious file to trigger this vulnerability.

CVE-2021-40396 advantech vulnerability CVSS: 7.2 28 Jan 2022, 20:15 UTC

A privilege escalation vulnerability exists in the installation of Advantech DeviceOn/iService 1.1.7. A specially-crafted file can be replaced in the system to escalate privileges to NT SYSTEM authority. An attacker can provide a malicious file to trigger this vulnerability.

CVE-2021-40389 advantech vulnerability CVSS: 7.2 28 Jan 2022, 20:15 UTC

A privilege escalation vulnerability exists in the installation of Advantech DeviceOn/iEdge Server 1.0.2. A specially-crafted file can be replaced in the system to escalate privileges to NT SYSTEM authority. An attacker can provide a malicious file to trigger this vulnerability.

CVE-2021-40388 advantech vulnerability CVSS: 7.2 28 Jan 2022, 20:15 UTC

A privilege escalation vulnerability exists in Advantech SQ Manager Server 1.0.6. A specially-crafted file can be replaced in the system to escalate privileges to NT SYSTEM authority. An attacker can provide a malicious file to trigger this vulnerability.

CVE-2021-21937 advantech vulnerability CVSS: 4.0 22 Dec 2021, 19:15 UTC

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this vulnerability at ‘host_alt_filter’ parameter. This can be done as any authenticated user or through cross-site request forgery.

CVE-2021-21936 advantech vulnerability CVSS: 6.5 22 Dec 2021, 19:15 UTC

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this vulnerability at ‘health_alt_filter’ parameter. This can be done as any authenticated user or through cross-site request forgery.

CVE-2021-21935 advantech vulnerability CVSS: 4.0 22 Dec 2021, 19:15 UTC

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this vulnerability at ‘host_alt_filter2’ parameter. This can be done as any authenticated user or through cross-site request forgery.

CVE-2021-21934 advantech vulnerability CVSS: 4.0 22 Dec 2021, 19:15 UTC

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this at ‘imei_filter’ parameter. This can be done as any authenticated user or through cross-site request forgery.

CVE-2021-21933 advantech vulnerability CVSS: 4.0 22 Dec 2021, 19:15 UTC

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this at ‘esn_filter’ parameter. This can be done as any authenticated user or through cross-site request forgery.

CVE-2021-21932 advantech vulnerability CVSS: 4.0 22 Dec 2021, 19:15 UTC

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this at ‘name_filter’ parameter. This can be done as any authenticated user or through cross-site request forgery.

CVE-2021-21931 advantech vulnerability CVSS: 4.0 22 Dec 2021, 19:15 UTC

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests at‘ stat_filter’ parameter to trigger this vulnerability. This can be done as any authenticated user or through cross-site request forgery.

CVE-2021-21930 advantech vulnerability CVSS: 4.0 22 Dec 2021, 19:15 UTC

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests at ‘sn_filter’ parameter to trigger this vulnerability. This can be done as any authenticated user or through cross-site request forgery.

CVE-2021-21929 advantech vulnerability CVSS: 4.0 22 Dec 2021, 19:15 UTC

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests at ‘prod_filter’ parameter to trigger this vulnerability. This can be done as any authenticated user or through cross-site request forgery.

CVE-2021-21928 advantech vulnerability CVSS: 4.0 22 Dec 2021, 19:15 UTC

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests at ‘mac_filter’ parameter to trigger this vulnerability. This can be done as any authenticated user or through cross-site request forgery.

CVE-2021-21927 advantech vulnerability CVSS: 4.0 22 Dec 2021, 19:15 UTC

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger these vulnerabilities. This can be done as any authenticated user or through cross-site request forgery at ‘loc_filter’ parameter.

CVE-2021-21926 advantech vulnerability CVSS: 4.0 22 Dec 2021, 19:15 UTC

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger these vulnerabilities. This can be done as any authenticated user or through cross-site request forgery at ‘health_filter’ parameter.

CVE-2021-21925 advantech vulnerability CVSS: 4.0 22 Dec 2021, 19:15 UTC

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger these vulnerabilities. This can be done as any authenticated user or through cross-site request forgery at ‘firm_filter’ parameter.

CVE-2021-21924 advantech vulnerability CVSS: 4.0 22 Dec 2021, 19:15 UTC

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger these vulnerabilities. This can be done as any authenticated user or through cross-site request forgery at ‘desc_filter’ parameter.

CVE-2021-21923 advantech vulnerability CVSS: 4.0 22 Dec 2021, 19:15 UTC

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this vulnerability at ‘company_filter’ parameter with the administrative account or through cross-site request forgery.

CVE-2021-21922 advantech vulnerability CVSS: 4.0 22 Dec 2021, 19:15 UTC

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this vulnerability at ‘username_filter’ parameter with the administrative account or through cross-site request forgery.

CVE-2021-21921 advantech vulnerability CVSS: 4.0 22 Dec 2021, 19:15 UTC

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this vulnerability at ‘name_filter’ parameter with the administrative account or through cross-site request forgery.

CVE-2021-21920 advantech vulnerability CVSS: 4.0 22 Dec 2021, 19:15 UTC

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this vulnerability at ‘surname_filter’ parameter with the administrative account or through cross-site request forgery.

CVE-2021-21919 advantech vulnerability CVSS: 4.0 22 Dec 2021, 19:15 UTC

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this vulnerability at ord’ parameter. However, the high privilege super-administrator account needs to be used to achieve exploitation without cross-site request forgery attack.

CVE-2021-21918 advantech vulnerability CVSS: 4.0 22 Dec 2021, 19:15 UTC

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this vulnerability at ‘name_filter’ parameter. However, the high privilege super-administrator account needs to be used to achieve exploitation without cross-site request forgery attack.

CVE-2021-21917 advantech vulnerability CVSS: 6.5 22 Dec 2021, 19:15 UTC

An exploitable SQL injection vulnerability exist in the ‘group_list’ page of the Advantech R-SeeNet 2.4.15 (30.07.2021). A specially-crafted HTTP request at '‘ord’ parameter. An attacker can make authenticated HTTP requests to trigger this vulnerability. This can be done as any authenticated user or through cross-site request forgery.

CVE-2021-21916 advantech vulnerability CVSS: 6.5 22 Dec 2021, 19:15 UTC

An exploitable SQL injection vulnerability exist in the ‘group_list’ page of the Advantech R-SeeNet 2.4.15 (30.07.2021). A specially-crafted HTTP request at 'description_filter’ parameter. An attacker can make authenticated HTTP requests to trigger this vulnerability. This can be done as any authenticated user or through cross-site request forgery.

CVE-2021-21915 advantech vulnerability CVSS: 6.5 22 Dec 2021, 19:15 UTC

An exploitable SQL injection vulnerability exist in the ‘group_list’ page of the Advantech R-SeeNet 2.4.15 (30.07.2021). A specially-crafted HTTP request at ‘company_filter’ parameter. An attacker can make authenticated HTTP requests to trigger this vulnerability. This can be done as any authenticated user or through cross-site request forgery.

CVE-2021-21912 advantech vulnerability CVSS: 7.2 22 Dec 2021, 19:15 UTC

A privilege escalation vulnerability exists in the Windows version of installation for Advantech R-SeeNet Advantech R-SeeNet 2.4.15 (30.07.2021). A specially-crafted file can be replaced in the system to escalate privileges to NT SYSTEM authority. An attacker can provide a malicious file to trigger this vulnerability.

CVE-2021-21911 advantech vulnerability CVSS: 7.2 22 Dec 2021, 19:15 UTC

A privilege escalation vulnerability exists in the Windows version of installation for Advantech R-SeeNet Advantech R-SeeNet 2.4.15 (30.07.2021). A specially-crafted file can be replaced in the system to escalate privileges to NT SYSTEM authority. An attacker can provide a malicious file to trigger this vulnerability.

CVE-2021-21910 advantech vulnerability CVSS: 7.2 22 Dec 2021, 19:15 UTC

A privilege escalation vulnerability exists in the Windows version of installation for Advantech R-SeeNet Advantech R-SeeNet 2.4.15 (30.07.2021). A specially-crafted file can be replaced in the system to escalate privileges to NT SYSTEM authority. An attacker can provide a malicious file to trigger this vulnerability.

CVE-2021-42703 advantech vulnerability CVSS: 4.3 15 Nov 2021, 15:15 UTC

This vulnerability could allow an attacker to send malicious Javascript code resulting in hijacking of the user’s cookie/session tokens, redirecting the user to a malicious webpage, and performing unintended browser action.

CVE-2021-42706 advantech vulnerability CVSS: 4.6 15 Nov 2021, 14:15 UTC

This vulnerability could allow an attacker to disclose information and execute arbitrary code on affected installations of WebAccess/MHI Designer

CVE-2021-32951 advantech vulnerability CVSS: 5.0 27 Oct 2021, 01:15 UTC

WebAccess/NMS (Versions prior to v3.0.3_Build6299) has an improper authentication vulnerability, which may allow unauthorized users to view resources monitored and controlled by the WebAccess/NMS, as well as IP addresses and names of all the devices managed via WebAccess/NMS.

CVE-2021-38389 advantech vulnerability CVSS: 7.5 18 Oct 2021, 13:15 UTC

Advantech WebAccess versions 9.02 and prior are vulnerable to a stack-based buffer overflow, which may allow an attacker to remotely execute code.

CVE-2021-33023 advantech vulnerability CVSS: 7.5 18 Oct 2021, 13:15 UTC

Advantech WebAccess versions 9.02 and prior are vulnerable to a heap-based buffer overflow, which may allow an attacker to remotely execute code.

CVE-2021-38431 advantech vulnerability CVSS: 4.0 15 Oct 2021, 13:15 UTC

An authenticated user using Advantech WebAccess SCADA in versions 9.0.3 and prior can use API functions to disclose project names and paths from other users.

CVE-2021-38408 advantech vulnerability CVSS: 7.5 09 Sep 2021, 12:15 UTC

A stack-based buffer overflow vulnerability in Advantech WebAccess Versions 9.02 and prior caused by a lack of proper validation of the length of user-supplied data may allow remote code execution.

CVE-2021-32943 advantech vulnerability CVSS: 7.5 10 Aug 2021, 15:15 UTC

The affected product is vulnerable to a stack-based buffer overflow, which may allow an attacker to remotely execute arbitrary code on the WebAccess/SCADA (WebAccess/SCADA versions prior to 8.4.5, WebAccess/SCADA versions prior to 9.0.1).

CVE-2021-22676 advantech vulnerability CVSS: 4.3 10 Aug 2021, 15:15 UTC

UserExcelOut.asp within WebAccess/SCADA is vulnerable to cross-site scripting (XSS), which could allow an attacker to send malicious JavaScript code. This could result in hijacking of cookie/session tokens, redirection to a malicious webpage, and unintended browser action on the WebAccess/SCADA (WebAccess/SCADA versions prior to 8.4.5, WebAccess/SCADA versions prior to 9.0.1).

CVE-2021-22674 advantech vulnerability CVSS: 4.0 10 Aug 2021, 14:15 UTC

The affected product is vulnerable to a relative path traversal condition, which may allow an attacker access to unauthorized files and directories on the WebAccess/SCADA (WebAccess/SCADA versions prior to 8.4.5, WebAccess/SCADA versions prior to 9.0.1).

CVE-2021-21805 advantech vulnerability CVSS: 10.0 05 Aug 2021, 21:15 UTC

An OS Command Injection vulnerability exists in the ping.php script functionality of Advantech R-SeeNet v 2.4.12 (20.10.2020). A specially crafted HTTP request can lead to arbitrary OS command execution. An attacker can send a crafted HTTP request to trigger this vulnerability.

CVE-2021-21804 advantech vulnerability CVSS: 7.5 16 Jul 2021, 11:15 UTC

A local file inclusion (LFI) vulnerability exists in the options.php script functionality of Advantech R-SeeNet v 2.4.12 (20.10.2020). A specially crafted HTTP request can lead to arbitrary PHP code execution. An attacker can send a crafted HTTP request to trigger this vulnerability.

CVE-2021-21803 advantech vulnerability CVSS: 4.3 16 Jul 2021, 11:15 UTC

This vulnerability is present in device_graph_page.php script, which is a part of the Advantech R-SeeNet web applications. A specially crafted URL by an attacker and visited by a victim can lead to arbitrary JavaScript code execution.

CVE-2021-21802 advantech vulnerability CVSS: 4.3 16 Jul 2021, 11:15 UTC

This vulnerability is present in device_graph_page.php script, which is a part of the Advantech R-SeeNet web applications. A specially crafted URL by an attacker and visited by a victim can lead to arbitrary JavaScript code execution.

CVE-2021-21801 advantech vulnerability CVSS: 4.3 16 Jul 2021, 11:15 UTC

This vulnerability is present in device_graph_page.php script, which is a part of the Advantech R-SeeNet web applications. A specially crafted URL by an attacker and visited by a victim can lead to arbitrary JavaScript code execution.

CVE-2021-21800 advantech vulnerability CVSS: 4.3 16 Jul 2021, 11:15 UTC

Cross-site scripting vulnerabilities exist in the ssh_form.php script functionality of Advantech R-SeeNet v 2.4.12 (20.10.2020). If a user visits a specially crafted URL, it can lead to arbitrary JavaScript code execution in the context of the targeted user’s browser. An attacker can provide a crafted URL to trigger this vulnerability.

CVE-2021-21799 advantech vulnerability CVSS: 4.3 16 Jul 2021, 11:15 UTC

Cross-site scripting vulnerabilities exist in the telnet_form.php script functionality of Advantech R-SeeNet v 2.4.12 (20.10.2020). If a user visits a specially crafted URL, it can lead to arbitrary JavaScript code execution in the context of the targeted user’s browser. An attacker can provide a crafted URL to trigger this vulnerability.

CVE-2021-33004 advantech vulnerability CVSS: 6.8 24 Jun 2021, 18:15 UTC

The affected product is vulnerable to memory corruption condition due to lack of proper validation of user supplied files, which may allow an attacker to execute arbitrary code. User interaction is required on the WebAccess HMI Designer (versions 2.1.9.95 and prior).

CVE-2021-33002 advantech vulnerability CVSS: 6.8 24 Jun 2021, 18:15 UTC

Opening a maliciously crafted project file may cause an out-of-bounds write, which may allow an attacker to execute arbitrary code. User interaction is require on the WebAccess HMI Designer (versions 2.1.9.95 and prior).

CVE-2021-33000 advantech vulnerability CVSS: 6.8 24 Jun 2021, 18:15 UTC

Parsing a maliciously crafted project file may cause a heap-based buffer overflow, which may allow an attacker to perform arbitrary code execution. User interaction is required on the WebAccess HMI Designer (versions 2.1.9.95 and prior).

CVE-2021-32956 advantech vulnerability CVSS: 5.8 18 Jun 2021, 14:15 UTC

Advantech WebAccess/SCADA Versions 9.0.1 and prior is vulnerable to redirection, which may allow an attacker to send a maliciously crafted URL that could result in redirecting a user to a malicious webpage.

CVE-2021-32954 advantech vulnerability CVSS: 6.8 18 Jun 2021, 14:15 UTC

Advantech WebAccess/SCADA Versions 9.0.1 and prior is vulnerable to a directory traversal, which may allow an attacker to remotely read arbitrary files on the file system.

CVE-2021-32932 advantech vulnerability CVSS: 5.0 11 Jun 2021, 17:15 UTC

The affected product is vulnerable to a SQL injection, which may allow an unauthorized attacker to disclose information on the iView (versions prior to v5.7.03.6182).

CVE-2021-32930 advantech vulnerability CVSS: 7.5 11 Jun 2021, 17:15 UTC

The affected product’s configuration is vulnerable due to missing authentication, which may allow an attacker to change configurations and execute arbitrary code on the iView (versions prior to v5.7.03.6182).

CVE-2021-34540 advantech vulnerability CVSS: 4.3 11 Jun 2021, 12:15 UTC

Advantech WebAccess 8.4.2 and 8.4.4 allows XSS via the username column of the bwRoot.asp page of WADashboard.

CVE-2021-27437 advantech vulnerability CVSS: 6.4 07 May 2021, 15:15 UTC

The affected product allows attackers to obtain sensitive information from the WISE-PaaS dashboard. The system contains a hard-coded administrator username and password that can be used to query Grafana APIs. Authentication is not required for exploitation on the WISE-PaaS/RMM (versions prior to 9.0.1).

CVE-2021-22669 advantech vulnerability CVSS: 9.0 26 Apr 2021, 19:15 UTC

Incorrect permissions are set to default on the ‘Project Management’ page of WebAccess/SCADA portal of WebAccess/SCADA Versions 9.0.1 and prior, which may allow a low-privileged user to update an administrator’s password and login as an administrator to escalate privileges on the system.

CVE-2021-27436 advantech vulnerability CVSS: 4.3 18 Mar 2021, 22:15 UTC

WebAccess/SCADA Versions 9.0 and prior is vulnerable to cross-site scripting, which may allow an attacker to send malicious JavaScript code to an unsuspecting user, which could result in hijacking of the user’s cookie/session tokens, redirecting the user to a malicious webpage and performing unintended browser actions.

CVE-2019-18235 advantech vulnerability CVSS: 7.5 17 Mar 2021, 19:15 UTC

Advantech Spectre RT ERT351 Versions 5.1.3 and prior has insufficient login authentication parameters required for the web application may allow an attacker to gain full access using a brute-force password attack.

CVE-2019-18233 advantech vulnerability CVSS: 4.3 17 Mar 2021, 19:15 UTC

In Advantech Spectre RT Industrial Routers ERT351 5.1.3 and prior, the affected product does not neutralize special characters in the error response, allowing attackers to use a reflected XSS attack.

CVE-2019-18231 advantech vulnerability CVSS: 5.0 17 Mar 2021, 19:15 UTC

Advantech Spectre RT ERT351 Versions 5.1.3 and prior logins and passwords are transmitted in clear text form, which may allow an attacker to intercept the request.

CVE-2020-13554 advantech vulnerability CVSS: 7.2 03 Mar 2021, 17:15 UTC

An exploitable local privilege elevation vulnerability exists in the file system permissions of Advantech WebAccess/SCADA 9.0.1 installation. In webvrpcs Run Key Privilege Escalation in installation folder of WebAccess, an attacker can either replace binary or loaded modules to execute code with NT SYSTEM privilege.

CVE-2020-25161 advantech vulnerability CVSS: 6.5 23 Feb 2021, 17:15 UTC

The WADashboard component of WebAccess/SCADA Versions 9.0 and prior may allow an attacker to control or influence a path used in an operation on the filesystem and remotely execute code as an administrator.

CVE-2020-13555 advantech vulnerability CVSS: 7.2 17 Feb 2021, 19:15 UTC

An exploitable local privilege elevation vulnerability exists in the file system permissions of Advantech WebAccess/SCADA 9.0.1 installation. In COM Server Application Privilege Escalation, an attacker can either replace binary or loaded modules to execute code with NT SYSTEM privilege.

CVE-2020-13553 advantech vulnerability CVSS: 7.2 17 Feb 2021, 19:15 UTC

An exploitable local privilege elevation vulnerability exists in the file system permissions of Advantech WebAccess/SCADA 9.0.1 installation. In webvrpcs Run Key Privilege Escalation in installation folder of WebAccess, an attacker can either replace binary or loaded modules to execute code with NT SYSTEM privilege.

CVE-2020-13552 advantech vulnerability CVSS: 7.2 17 Feb 2021, 19:15 UTC

An exploitable local privilege elevation vulnerability exists in the file system permissions of Advantech WebAccess/SCADA 9.0.1 installation. In privilege escalation via multiple service executables in installation folder of WebAccess, an attacker can either replace binary or loaded modules to execute code with NT SYSTEM privilege.

CVE-2020-13551 advantech vulnerability CVSS: 7.2 17 Feb 2021, 19:15 UTC

An exploitable local privilege elevation vulnerability exists in the file system permissions of Advantech WebAccess/SCADA 9.0.1 installation. In privilege escalation via PostgreSQL executable, an attacker can either replace binary or loaded modules to execute code with NT SYSTEM privilege.

CVE-2020-13550 advantech vulnerability CVSS: 4.0 17 Feb 2021, 19:15 UTC

A local file inclusion vulnerability exists in the installation functionality of Advantech WebAccess/SCADA 9.0.1. A specially crafted application can lead to information disclosure. An attacker can send an authenticated HTTP request to trigger this vulnerability.

CVE-2021-22658 advantech vulnerability CVSS: 7.5 11 Feb 2021, 18:15 UTC

Advantech iView versions prior to v5.7.03.6112 are vulnerable to a SQL injection, which may allow an attacker to escalate privileges to 'Administrator'.

CVE-2021-22656 advantech vulnerability CVSS: 5.0 11 Feb 2021, 18:15 UTC

Advantech iView versions prior to v5.7.03.6112 are vulnerable to directory traversal, which may allow an attacker to read sensitive files.

CVE-2021-22654 advantech vulnerability CVSS: 5.0 11 Feb 2021, 18:15 UTC

Advantech iView versions prior to v5.7.03.6112 are vulnerable to a SQL injection, which may allow an unauthorized attacker to disclose information.

CVE-2021-22652 advantech vulnerability CVSS: 7.5 11 Feb 2021, 18:15 UTC

Access to the Advantech iView versions prior to v5.7.03.6112 configuration are missing authentication, which may allow an unauthorized attacker to change the configuration and obtain code execution.

CVE-2020-25157 advantech vulnerability CVSS: 5.0 20 Oct 2020, 22:15 UTC

The R-SeeNet webpage (1.5.1 through 2.4.10) suffers from SQL injection, which allows a remote attacker to invoke queries on the database and retrieve sensitive information.

CVE-2020-16202 advantech vulnerability CVSS: 7.2 22 Sep 2020, 15:15 UTC

WebAccess Node (All versions prior to 9.0.1) has incorrect permissions set for resources used by specific services, which may allow code execution with system privileges.

CVE-2020-16245 advantech vulnerability CVSS: 7.5 25 Aug 2020, 19:15 UTC

Advantech iView, Versions 5.7 and prior. The affected product is vulnerable to path traversal vulnerabilities that could allow an attacker to create/download arbitrary files, limit system availability, and remotely execute code.

CVE-2020-16229 advantech vulnerability CVSS: 6.8 06 Aug 2020, 19:15 UTC

Advantech WebAccess HMI Designer, Versions 2.1.9.31 and prior. Processing specially crafted project files lacking proper validation of user supplied data may cause a type confusion condition, which may allow remote code execution, disclosure/modification of information, or cause the application to crash.

CVE-2020-16217 advantech vulnerability CVSS: 6.8 06 Aug 2020, 19:15 UTC

Advantech WebAccess HMI Designer, Versions 2.1.9.31 and prior. A double free vulnerability caused by processing specially crafted project files may allow remote code execution, disclosure/modification of information, or cause the application to crash.

CVE-2020-16215 advantech vulnerability CVSS: 9.3 06 Aug 2020, 19:15 UTC

Advantech WebAccess HMI Designer, Versions 2.1.9.31 and prior. Processing specially crafted project files lacking proper validation of user supplied data may cause a stack-based buffer overflow, which may allow remote code execution, disclosure/modification of information, or cause the application to crash.

CVE-2020-16213 advantech vulnerability CVSS: 6.8 06 Aug 2020, 19:15 UTC

Advantech WebAccess HMI Designer, Versions 2.1.9.31 and prior. Processing specially crafted project files lacking proper validation of user supplied data may cause the system to write outside the intended buffer area, which may allow remote code execution, disclosure/modification of information, or cause the application to crash.

CVE-2020-16211 advantech vulnerability CVSS: 4.3 06 Aug 2020, 19:15 UTC

Advantech WebAccess HMI Designer, Versions 2.1.9.31 and prior. An out-of-bounds read vulnerability may be exploited by processing specially crafted project files, which may allow an attacker to read information.

CVE-2020-16207 advantech vulnerability CVSS: 6.8 06 Aug 2020, 19:15 UTC

Advantech WebAccess HMI Designer, Versions 2.1.9.31 and prior. Multiple heap-based buffer overflow vulnerabilities may be exploited by opening specially crafted project files that may overflow the heap, which may allow remote code execution, disclosure/modification of information, or cause the application to crash.

CVE-2020-14503 advantech vulnerability CVSS: 7.5 15 Jul 2020, 03:15 UTC

Advantech iView, versions 5.6 and prior, has an improper input validation vulnerability. Successful exploitation of this vulnerability could allow an attacker to remotely execute arbitrary code.

CVE-2020-14501 advantech vulnerability CVSS: 5.0 15 Jul 2020, 03:15 UTC

Advantech iView, versions 5.6 and prior, has an improper authentication for critical function (CWE-306) issue. Successful exploitation of this vulnerability may allow an attacker to obtain the information of the user table, including the administrator credentials in plain text. An attacker may also delete the administrator account.

CVE-2020-14499 advantech vulnerability CVSS: 5.0 15 Jul 2020, 03:15 UTC

Advantech iView, versions 5.6 and prior, has an improper access control vulnerability. Successful exploitation of this vulnerability may allow an attacker to obtain all user accounts credentials.

CVE-2020-14507 advantech vulnerability CVSS: 7.5 15 Jul 2020, 02:15 UTC

Advantech iView, versions 5.6 and prior, is vulnerable to multiple path traversal vulnerabilities that could allow an attacker to create/download arbitrary files, limit system availability, and remotely execute code.

CVE-2020-14505 advantech vulnerability CVSS: 7.5 15 Jul 2020, 02:15 UTC

Advantech iView, versions 5.6 and prior, has an improper neutralization of special elements used in a command (“command injection”) vulnerability. Successful exploitation of this vulnerability may allow an attacker to send a HTTP GET or POST request that creates a command string without any validation. The attacker may then remotely execute code.

CVE-2020-14497 advantech vulnerability CVSS: 7.5 15 Jul 2020, 02:15 UTC

Advantech iView, versions 5.6 and prior, contains multiple SQL injection vulnerabilities that are vulnerable to the use of an attacker-controlled string in the construction of SQL queries. An attacker could extract user credentials, read or modify information, and remotely execute code.

CVE-2020-12019 advantech vulnerability CVSS: 7.5 15 Jun 2020, 20:15 UTC

WebAccess Node Version 8.4.4 and prior is vulnerable to a stack-based buffer overflow, which may allow an attacker to remotely execute arbitrary code.

CVE-2020-12026 advantech vulnerability CVSS: 6.5 08 May 2020, 12:15 UTC

Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0. Multiple relative path traversal vulnerabilities exist that may allow a low privilege user to overwrite files outside the application’s control.

CVE-2020-12022 advantech vulnerability CVSS: 7.5 08 May 2020, 12:15 UTC

Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0. An improper validation vulnerability exists that could allow an attacker to inject specially crafted input into memory where it can be executed.

CVE-2020-12018 advantech vulnerability CVSS: 5.0 08 May 2020, 12:15 UTC

Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0. An out-of-bounds vulnerability exists that may allow access to unauthorized data.

CVE-2020-12014 advantech vulnerability CVSS: 5.0 08 May 2020, 12:15 UTC

Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0. Input is not properly sanitized and may allow an attacker to inject SQL commands.

CVE-2020-12010 advantech vulnerability CVSS: 5.8 08 May 2020, 12:15 UTC

Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0. Multiple relative path traversal vulnerabilities exist that may allow an authenticated user to use a specially crafted file to delete files outside the application’s control.

CVE-2020-12006 advantech vulnerability CVSS: 7.5 08 May 2020, 12:15 UTC

Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0. Multiple relative path traversal vulnerabilities exist that may allow a low privilege user to overwrite files outside the application’s control.

CVE-2020-12002 advantech vulnerability CVSS: 7.5 08 May 2020, 12:15 UTC

Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0. Multiple stack-based buffer overflow vulnerabilities exist caused by a lack of proper validation of the length of user-supplied data, which may allow remote code execution.

CVE-2020-10638 advantech vulnerability CVSS: 7.5 08 May 2020, 12:15 UTC

Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0. Multiple heap-based buffer overflow vulnerabilities exist caused by a lack of proper validation of the length of user-supplied data, which may allow remote code execution.

CVE-2020-10631 advantech vulnerability CVSS: 7.5 09 Apr 2020, 14:15 UTC

An attacker could use a specially crafted URL to delete or read files outside the WebAccess/NMS's (versions prior to 3.0.2) control.

CVE-2020-10629 advantech vulnerability CVSS: 5.0 09 Apr 2020, 14:15 UTC

WebAccess/NMS (versions prior to 3.0.2) does not sanitize XML input. Specially crafted XML input could allow an attacker to read sensitive files.

CVE-2020-10625 advantech vulnerability CVSS: 7.5 09 Apr 2020, 14:15 UTC

WebAccess/NMS (versions prior to 3.0.2) allows an unauthenticated remote user to create a new admin account.

CVE-2020-10623 advantech vulnerability CVSS: 4.0 09 Apr 2020, 14:15 UTC

Multiple vulnerabilities could allow an attacker with low privileges to perform SQL injection on WebAccess/NMS (versions prior to 3.0.2) to gain access to sensitive information.

CVE-2020-10619 advantech vulnerability CVSS: 6.4 09 Apr 2020, 14:15 UTC

An attacker could use a specially crafted URL to delete files outside the WebAccess/NMS's (versions prior to 3.0.2) control.

CVE-2020-10617 advantech vulnerability CVSS: 5.0 09 Apr 2020, 14:15 UTC

There are multiple ways an unauthenticated attacker could perform SQL injection on WebAccess/NMS (versions prior to 3.0.2) to gain access to sensitive information.

CVE-2020-10603 advantech vulnerability CVSS: 6.5 09 Apr 2020, 14:15 UTC

WebAccess/NMS (versions prior to 3.0.2) does not properly sanitize user input and may allow an attacker to inject system commands remotely.

CVE-2020-10621 advantech vulnerability CVSS: 10.0 09 Apr 2020, 13:15 UTC

Multiple issues exist that allow files to be uploaded and executed on the WebAccess/NMS (versions prior to 3.0.2).

CVE-2019-3942 advantech vulnerability CVSS: 5.0 01 Apr 2020, 17:15 UTC

Advantech WebAccess 8.3.4 does not properly restrict an RPC call that allows unauthenticated, remote users to read files. An attacker can use this vulnerability to recover the administrator password.

CVE-2020-10607 advantech vulnerability CVSS: 6.5 27 Mar 2020, 14:15 UTC

In Advantech WebAccess, Versions 8.4.2 and prior. A stack-based buffer overflow vulnerability caused by a lack of proper validation of the length of user-supplied data may allow remote code execution.

CVE-2019-18257 advantech vulnerability CVSS: 7.5 17 Dec 2019, 23:15 UTC

In Advantech DiagAnywhere Server, Versions 3.07.11 and prior, multiple stack-based buffer overflow vulnerabilities exist in the file transfer service listening on the TCP port. Successful exploitation could allow an unauthenticated attacker to execute arbitrary code with the privileges of the user running DiagAnywhere Server.

CVE-2019-3951 advantech vulnerability CVSS: 7.5 12 Dec 2019, 21:15 UTC

Advantech WebAccess before 8.4.3 allows unauthenticated remote attackers to execute arbitrary code or cause a denial of service (memory corruption) due to a stack-based buffer overflow when handling IOCTL 70533 RPC messages.

CVE-2019-18229 advantech vulnerability CVSS: 4.0 31 Oct 2019, 22:15 UTC

Advantech WISE-PaaS/RMM, Versions 3.3.29 and prior. Lack of sanitization of user-supplied input cause SQL injection vulnerabilities. An attacker can leverage these vulnerabilities to disclose information.

CVE-2019-18227 advantech vulnerability CVSS: 5.0 31 Oct 2019, 22:15 UTC

Advantech WISE-PaaS/RMM, Versions 3.3.29 and prior. XXE vulnerabilities exist that may allow disclosure of sensitive data.

CVE-2019-13551 advantech vulnerability CVSS: 10.0 31 Oct 2019, 21:15 UTC

Advantech WISE-PaaS/RMM, Versions 3.3.29 and prior. Path traversal vulnerabilities are caused by a lack of proper validation of a user-supplied path prior to use in file operations. An attacker can leverage these vulnerabilities to remotely execute code while posing as an administrator.

CVE-2019-13547 advantech vulnerability CVSS: 10.0 31 Oct 2019, 21:15 UTC

Advantech WISE-PaaS/RMM, Versions 3.3.29 and prior. There is an unsecured function that allows anyone who can access the IP address to use the function without authentication.

CVE-2019-16901 advantech vulnerability CVSS: 5.0 26 Sep 2019, 01:15 UTC

Advantech WebAccess/HMI Designer 2.1.9.31 has Exception Handler Chain corruption starting at Unknown Symbol @ 0x0000000000000000 called from ntdll!RtlRaiseStatus+0x00000000000000b4.

CVE-2019-16900 advantech vulnerability CVSS: 5.0 26 Sep 2019, 01:15 UTC

Advantech WebAccess/HMI Designer 2.1.9.31 has a User Mode Write AV starting at MSVCR90!memcpy+0x000000000000015c.

CVE-2019-16899 advantech vulnerability CVSS: 5.0 26 Sep 2019, 01:15 UTC

In Advantech WebAccess/HMI Designer 2.1.9.31, Data from a Faulting Address controls Code Flow starting at PM_V3!CTagInfoThreadBase::GetNICInfo+0x0000000000512918.

CVE-2019-13558 advantech vulnerability CVSS: 9.0 18 Sep 2019, 22:15 UTC

In WebAccess versions 8.4.1 and prior, an exploit executed over the network may cause improper control of generation of code, which may allow remote code execution, data exfiltration, or cause a system crash.

CVE-2019-13556 advantech vulnerability CVSS: 6.5 18 Sep 2019, 22:15 UTC

In WebAccess versions 8.4.1 and prior, multiple stack-based buffer overflow vulnerabilities are caused by a lack of proper validation of the length of user-supplied data. Exploitation of these vulnerabilities may allow remote code execution.

CVE-2019-13552 advantech vulnerability CVSS: 6.5 18 Sep 2019, 21:15 UTC

In WebAccess versions 8.4.1 and prior, multiple command injection vulnerabilities are caused by a lack of proper validation of user-supplied data and may allow arbitrary file deletion and remote code execution.

CVE-2019-13550 advantech vulnerability CVSS: 9.0 18 Sep 2019, 21:15 UTC

In WebAccess, versions 8.4.1 and prior, an improper authorization vulnerability may allow an attacker to disclose sensitive information, cause improper control of generation of code, which may allow remote code execution or cause a system crash.

CVE-2019-3975 advantech vulnerability CVSS: 7.5 10 Sep 2019, 16:15 UTC

Stack-based buffer overflow in Advantech WebAccess/SCADA 8.4.1 allows a remote, unauthenticated attacker to execute arbitrary code via a crafted IOCTL 70603 RPC message.

CVE-2019-10961 advantech vulnerability CVSS: 6.8 02 Aug 2019, 17:15 UTC

In Advantech WebAccess HMI Designer Version 2.1.9.23 and prior, processing specially crafted MCR files lacking proper validation of user supplied data may cause the system to write outside the intended buffer area, allowing remote code execution.

CVE-2019-10993 advantech vulnerability CVSS: 7.5 28 Jun 2019, 21:15 UTC

In WebAccess/SCADA Versions 8.3.5 and prior, multiple untrusted pointer dereference vulnerabilities may allow a remote attacker to execute arbitrary code.

CVE-2019-10991 advantech vulnerability CVSS: 7.5 28 Jun 2019, 21:15 UTC

In WebAccess/SCADA, Versions 8.3.5 and prior, multiple stack-based buffer overflow vulnerabilities are caused by a lack of proper validation of the length of user-supplied data. Exploitation of these vulnerabilities may allow remote code execution.

CVE-2019-10989 advantech vulnerability CVSS: 7.5 28 Jun 2019, 21:15 UTC

In WebAccess/SCADA Versions 8.3.5 and prior, multiple heap-based buffer overflow vulnerabilities are caused by a lack of proper validation of the length of user-supplied data. Exploitation of these vulnerabilities may allow remote code execution. Note: A different vulnerability than CVE-2019-10991.

CVE-2019-10987 advantech vulnerability CVSS: 6.8 28 Jun 2019, 21:15 UTC

In WebAccess/SCADA Versions 8.3.5 and prior, multiple out-of-bounds write vulnerabilities are caused by a lack of proper validation of the length of user-supplied data. Exploitation of these vulnerabilities may allow remote code execution.

CVE-2019-10985 advantech vulnerability CVSS: 6.4 28 Jun 2019, 21:15 UTC

In WebAccess/SCADA, Versions 8.3.5 and prior, a path traversal vulnerability is caused by a lack of proper validation of a user-supplied path prior to use in file operations. An attacker can leverage this vulnerability to delete files while posing as an administrator.

CVE-2019-10983 advantech vulnerability CVSS: 5.0 28 Jun 2019, 21:15 UTC

In WebAccess/SCADA Versions 8.3.5 and prior, an out-of-bounds read vulnerability is caused by a lack of proper validation of user-supplied data. Exploitation of this vulnerability may allow disclosure of information.

CVE-2019-3954 advantech vulnerability CVSS: 7.5 19 Jun 2019, 00:15 UTC

Stack-based buffer overflow in Advantech WebAccess/SCADA 8.4.0 allows a remote, unauthenticated attacker to execute arbitrary code by sending a crafted IOCTL 81024 RPC call.

CVE-2019-3953 advantech vulnerability CVSS: 7.5 18 Jun 2019, 23:15 UTC

Stack-based buffer overflow in Advantech WebAccess/SCADA 8.4.0 allows a remote, unauthenticated attacker to execute arbitrary code by sending a crafted IOCTL 10012 RPC call.

CVE-2019-3941 advantech vulnerability CVSS: 6.4 09 Apr 2019, 16:29 UTC

Advantech WebAccess 8.3.4 allows unauthenticated, remote attackers to delete arbitrary files via IOCTL 10005 RPC.

CVE-2019-3940 advantech vulnerability CVSS: 7.5 09 Apr 2019, 16:29 UTC

Advantech WebAccess 8.3.4 is vulnerable to file upload attacks via unauthenticated RPC call. An unauthenticated, remote attacker can use this vulnerability to execute arbitrary code.

CVE-2019-6554 advantech vulnerability CVSS: 5.0 05 Apr 2019, 19:29 UTC

Advantech WebAccess/SCADA, Versions 8.3.5 and prior. An improper access control vulnerability may allow an attacker to cause a denial-of-service condition.

CVE-2019-6552 advantech vulnerability CVSS: 7.5 05 Apr 2019, 19:29 UTC

Advantech WebAccess/SCADA, Versions 8.3.5 and prior. Multiple command injection vulnerabilities, caused by a lack of proper validation of user-supplied data, may allow remote code execution.

CVE-2019-6550 advantech vulnerability CVSS: 7.5 05 Apr 2019, 19:29 UTC

Advantech WebAccess/SCADA, Versions 8.3.5 and prior. Multiple stack-based buffer overflow vulnerabilities, caused by a lack of proper validation of the length of user-supplied data, may allow remote code execution.

CVE-2019-6523 advantech vulnerability CVSS: 7.5 05 Feb 2019, 21:29 UTC

WebAccess/SCADA, Version 8.3. The software does not properly sanitize its inputs for SQL commands.

CVE-2019-6521 advantech vulnerability CVSS: 7.5 05 Feb 2019, 21:29 UTC

WebAccess/SCADA, Version 8.3. Specially crafted requests could allow a possible authentication bypass that could allow an attacker to obtain and manipulate sensitive information.

CVE-2019-6519 advantech vulnerability CVSS: 7.5 05 Feb 2019, 21:29 UTC

WebAccess/SCADA, Version 8.3. An improper authentication vulnerability exists that could allow a possible authentication bypass allowing an attacker to upload malicious data.

CVE-2018-18999 advantech vulnerability CVSS: 7.5 19 Dec 2018, 18:29 UTC

WebAccess/SCADA, WebAccess/SCADA Version 8.3.2 installed on Windows 2008 R2 SP1. Lack of proper validation of user supplied input may allow an attacker to cause the overflow of a buffer on the stack.

CVE-2018-15707 advantech vulnerability CVSS: 3.5 31 Oct 2018, 22:29 UTC

Advantech WebAccess 8.3.1 and 8.3.2 are vulnerable to cross-site scripting in the Bwmainleft.asp page. An attacker could leverage this vulnerability to disclose credentials amongst other things.

CVE-2018-15706 advantech vulnerability CVSS: 6.8 31 Oct 2018, 22:29 UTC

WADashboard API in Advantech WebAccess 8.3.1 and 8.3.2 allows remote authenticated attackers to read any file on the filesystem due to a directory traversal vulnerability in the readFile API.

CVE-2018-15705 advantech vulnerability CVSS: 8.5 31 Oct 2018, 22:29 UTC

WADashboard API in Advantech WebAccess 8.3.1 and 8.3.2 allows remote authenticated attackers to write or overwrite any file on the filesystem due to a directory traversal vulnerability in the writeFile API. An attacker can use this vulnerability to remotely execute arbitrary code.

CVE-2018-17910 advantech vulnerability CVSS: 9.3 29 Oct 2018, 18:29 UTC

WebAccess Versions 8.3.2 and prior. The application fails to properly validate the length of user-supplied data, causing a buffer overflow condition that allows for arbitrary remote code execution.

CVE-2018-17908 advantech vulnerability CVSS: 7.2 29 Oct 2018, 18:29 UTC

WebAccess Versions 8.3.2 and prior. During installation, the application installer disables user access control and does not re-enable it after the installation is complete. This could allow an attacker to run elevated arbitrary code.

CVE-2018-14828 advantech vulnerability CVSS: 7.2 23 Oct 2018, 20:29 UTC

Advantech WebAccess 8.3.1 and earlier has an improper privilege management vulnerability, which may allow an attacker to access those files and perform actions at a system administrator level.

CVE-2018-14820 advantech vulnerability CVSS: 6.4 23 Oct 2018, 20:29 UTC

Advantech WebAccess 8.3.1 and earlier has a .dll component that is susceptible to external control of file name or path vulnerability, which may allow an arbitrary file deletion when processing.

CVE-2018-14816 advantech vulnerability CVSS: 7.5 23 Oct 2018, 20:29 UTC

Advantech WebAccess 8.3.1 and earlier has several stack-based buffer overflow vulnerabilities that have been identified, which may allow an attacker to execute arbitrary code.

CVE-2018-14806 advantech vulnerability CVSS: 7.5 23 Oct 2018, 20:29 UTC

Advantech WebAccess 8.3.1 and earlier has a path traversal vulnerability which may allow an attacker to execute arbitrary code.

CVE-2018-15704 advantech vulnerability CVSS: 9.0 22 Oct 2018, 19:29 UTC

Advantech WebAccess 8.3.2 and below is vulnerable to a stack buffer overflow vulnerability. A remote authenticated attacker could potentially exploit this vulnerability by sending a crafted HTTP request to broadweb/system/opcImg.asp.

CVE-2018-15703 advantech vulnerability CVSS: 4.3 22 Oct 2018, 19:29 UTC

Advantech WebAccess 8.3.2 and below is vulnerable to multiple reflected cross site scripting vulnerabilities. A remote unauthenticated attacker could potentially exploit this vulnerability by tricking a victim to supply malicious HTML or JavaScript code to WebAccess, which is then reflected back to the victim and executed by the web browser.

CVE-2018-8845 advantech vulnerability CVSS: 7.5 15 May 2018, 22:29 UTC

In Advantech WebAccess versions V8.2_20170817 and prior, WebAccess versions V8.3.0 and prior, WebAccess Dashboard versions V.2.0.15 and prior, WebAccess Scada Node versions prior to 8.3.1, and WebAccess/NMS 2.0.3 and prior, a heap-based buffer overflow vulnerability has been identified, which may allow an attacker to execute arbitrary code.

CVE-2018-8841 advantech vulnerability CVSS: 4.6 15 May 2018, 22:29 UTC

In Advantech WebAccess versions V8.2_20170817 and prior, WebAccess versions V8.3.0 and prior, WebAccess Dashboard versions V.2.0.15 and prior, WebAccess Scada Node versions prior to 8.3.1, and WebAccess/NMS 2.0.3 and prior, an improper privilege management vulnerability may allow an authenticated user to modify files when read access should only be given to the user.

CVE-2018-7505 advantech vulnerability CVSS: 7.5 15 May 2018, 22:29 UTC

In Advantech WebAccess versions V8.2_20170817 and prior, WebAccess versions V8.3.0 and prior, WebAccess Dashboard versions V.2.0.15 and prior, WebAccess Scada Node versions prior to 8.3.1, and WebAccess/NMS 2.0.3 and prior, a TFTP application has unrestricted file uploads to the web application without authorization, which may allow an attacker to execute arbitrary code.

CVE-2018-7503 advantech vulnerability CVSS: 5.0 15 May 2018, 22:29 UTC

In Advantech WebAccess versions V8.2_20170817 and prior, WebAccess versions V8.3.0 and prior, WebAccess Dashboard versions V.2.0.15 and prior, WebAccess Scada Node versions prior to 8.3.1, and WebAccess/NMS 2.0.3 and prior, a path transversal vulnerability has been identified, which may allow an attacker to disclose sensitive information on the target.

CVE-2018-7501 advantech vulnerability CVSS: 5.0 15 May 2018, 22:29 UTC

In Advantech WebAccess versions V8.2_20170817 and prior, WebAccess versions V8.3.0 and prior, WebAccess Dashboard versions V.2.0.15 and prior, WebAccess Scada Node versions prior to 8.3.1, and WebAccess/NMS 2.0.3 and prior, several SQL injection vulnerabilities have been identified, which may allow an attacker to disclose sensitive information from the host.

CVE-2018-7499 advantech vulnerability CVSS: 7.5 15 May 2018, 22:29 UTC

In Advantech WebAccess versions V8.2_20170817 and prior, WebAccess versions V8.3.0 and prior, WebAccess Dashboard versions V.2.0.15 and prior, WebAccess Scada Node versions prior to 8.3.1, and WebAccess/NMS 2.0.3 and prior, several stack-based buffer overflow vulnerabilities have been identified, which may allow an attacker to execute arbitrary code.

CVE-2018-7497 advantech vulnerability CVSS: 7.5 15 May 2018, 22:29 UTC

In Advantech WebAccess versions V8.2_20170817 and prior, WebAccess versions V8.3.0 and prior, WebAccess Dashboard versions V.2.0.15 and prior, WebAccess Scada Node versions prior to 8.3.1, and WebAccess/NMS 2.0.3 and prior, several untrusted pointer dereference vulnerabilities have been identified, which may allow an attacker to execute arbitrary code.

CVE-2018-7495 advantech vulnerability CVSS: 6.4 15 May 2018, 22:29 UTC

In Advantech WebAccess versions V8.2_20170817 and prior, WebAccess versions V8.3.0 and prior, WebAccess Dashboard versions V.2.0.15 and prior, WebAccess Scada Node versions prior to 8.3.1, and WebAccess/NMS 2.0.3 and prior, an external control of file name or path vulnerability has been identified, which may allow an attacker to delete files.

CVE-2018-10591 advantech vulnerability CVSS: 2.6 15 May 2018, 22:29 UTC

In Advantech WebAccess versions V8.2_20170817 and prior, WebAccess versions V8.3.0 and prior, WebAccess Dashboard versions V.2.0.15 and prior, WebAccess Scada Node versions prior to 8.3.1, and WebAccess/NMS 2.0.3 and prior, an origin validation error vulnerability has been identified, which may allow an attacker can create a malicious web site, steal session cookies, and access data of authenticated users.

CVE-2018-10590 advantech vulnerability CVSS: 5.0 15 May 2018, 22:29 UTC

In Advantech WebAccess versions V8.2_20170817 and prior, WebAccess versions V8.3.0 and prior, WebAccess Dashboard versions V.2.0.15 and prior, WebAccess Scada Node versions prior to 8.3.1, and WebAccess/NMS 2.0.3 and prior, an information exposure vulnerability through directory listing has been identified, which may allow an attacker to find important files that are not normally visible.

CVE-2018-10589 advantech vulnerability CVSS: 7.5 15 May 2018, 22:29 UTC

In Advantech WebAccess versions V8.2_20170817 and prior, WebAccess versions V8.3.0 and prior, WebAccess Dashboard versions V.2.0.15 and prior, WebAccess Scada Node versions prior to 8.3.1, and WebAccess/NMS 2.0.3 and prior, a path transversal vulnerability has been identified, which may allow an attacker to execute arbitrary code.

CVE-2017-5175 advantech vulnerability CVSS: 6.8 09 May 2018, 19:29 UTC

Advantech WebAccess 8.1 and earlier contains a DLL hijacking vulnerability which may allow an attacker to run a malicious DLL file within the search path resulting in execution of arbitrary code.

CVE-2018-8837 advantech vulnerability CVSS: 6.8 25 Apr 2018, 23:29 UTC

Processing specially crafted .pm3 files in Advantech WebAccess HMI Designer 2.1.7.32 and prior may cause the system to write outside the intended buffer area and may allow remote code execution.

CVE-2018-8835 advantech vulnerability CVSS: 6.8 25 Apr 2018, 23:29 UTC

Double free vulnerabilities in Advantech WebAccess HMI Designer 2.1.7.32 and prior caused by processing specially crafted .pm3 files may allow remote code execution.

CVE-2018-8833 advantech vulnerability CVSS: 6.8 25 Apr 2018, 23:29 UTC

Heap-based buffer overflow vulnerabilities in Advantech WebAccess HMI Designer 2.1.7.32 and prior caused by processing specially crafted .pm3 files may allow remote code execution.

CVE-2018-6911 advantech vulnerability CVSS: 10.0 13 Feb 2018, 14:29 UTC

The VBWinExec function in Node\AspVBObj.dll in Advantech WebAccess 8.3.0 allows remote attackers to execute arbitrary OS commands via a single argument (aka the command parameter).

CVE-2018-5445 advantech vulnerability CVSS: 5.0 25 Jan 2018, 03:29 UTC

A Path Traversal issue was discovered in Advantech WebAccess/SCADA versions prior to V8.2_20170817. An attacker has read access to files within the directory structure of the target device.

CVE-2018-5443 advantech vulnerability CVSS: 5.0 25 Jan 2018, 03:29 UTC

A SQL Injection issue was discovered in Advantech WebAccess/SCADA versions prior to V8.2_20170817. WebAccess/SCADA does not properly sanitize its inputs for SQL commands.

CVE-2017-16736 advantech vulnerability CVSS: 5.0 12 Jan 2018, 02:29 UTC

An Unrestricted Upload Of File With Dangerous Type issue was discovered in Advantech WebAccess versions prior to 8.3. WebAccess allows a remote attacker to upload arbitrary files.

CVE-2017-16732 advantech vulnerability CVSS: 6.4 12 Jan 2018, 02:29 UTC

A use-after-free issue was discovered in Advantech WebAccess versions prior to 8.3. WebAccess allows an unauthenticated attacker to specify an arbitrary address.

CVE-2017-16753 advantech vulnerability CVSS: 5.0 05 Jan 2018, 08:29 UTC

An Improper Input Validation issue was discovered in Advantech WebAccess versions prior to 8.3. WebAccess allows some inputs that may cause the program to crash.

CVE-2017-16728 advantech vulnerability CVSS: 5.0 05 Jan 2018, 08:29 UTC

An Untrusted Pointer Dereference issue was discovered in Advantech WebAccess versions prior to 8.3. There are multiple vulnerabilities that may allow an attacker to cause the program to use an invalid memory address, resulting in a program crash.

CVE-2017-16724 advantech vulnerability CVSS: 7.5 05 Jan 2018, 08:29 UTC

A Stack-based Buffer Overflow issue was discovered in Advantech WebAccess versions prior to 8.3. There are multiple instances of a vulnerability that allows too much data to be written to a location on the stack.

CVE-2017-16720 advantech vulnerability CVSS: 10.0 05 Jan 2018, 08:29 UTC

A Path Traversal issue was discovered in WebAccess versions 8.3.2 and earlier. An attacker has access to files within the directory structure of the target device.

CVE-2017-16716 advantech vulnerability CVSS: 7.5 05 Jan 2018, 08:29 UTC

A SQL Injection issue was discovered in WebAccess versions prior to 8.3. WebAccess does not properly sanitize its inputs for SQL commands.

CVE-2017-14016 advantech vulnerability CVSS: 6.8 06 Nov 2017, 22:29 UTC

A Stack-based Buffer Overflow issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. The application lacks proper validation of the length of user-supplied data prior to copying it to a stack-based buffer, which could allow an attacker to execute arbitrary code under the context of the process.

CVE-2017-12719 advantech vulnerability CVSS: 5.0 06 Nov 2017, 22:29 UTC

An Untrusted Pointer Dereference issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. A remote attacker is able to execute code to dereference a pointer within the program causing the application to become unavailable.

CVE-2017-12705 advantech vulnerability CVSS: 4.6 25 Oct 2017, 07:29 UTC

A Heap-Based Buffer Overflow issue was discovered in Advantech WebOP. A maliciously crafted project file may be able to trigger a heap-based buffer overflow, which may crash the process and allow an attacker to execute arbitrary code.

CVE-2017-12717 advantech vulnerability CVSS: 6.8 30 Aug 2017, 18:29 UTC

An Uncontrolled Search Path Element issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. A maliciously crafted dll file placed earlier in the search path may allow an attacker to execute code within the context of the application.

CVE-2017-12713 advantech vulnerability CVSS: 4.6 30 Aug 2017, 18:29 UTC

An Incorrect Permission Assignment for Critical Resource issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. Multiple files and folders with ACLs that affect other users are allowed to be modified by non-administrator accounts.

CVE-2017-12711 advantech vulnerability CVSS: 4.6 30 Aug 2017, 18:29 UTC

An Incorrect Privilege Assignment issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. A built-in user account has been granted a sensitive privilege that may allow a user to elevate to administrative privileges.

CVE-2017-12710 advantech vulnerability CVSS: 5.0 30 Aug 2017, 18:29 UTC

A SQL Injection issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. By submitting a specially crafted parameter, it is possible to inject arbitrary SQL statements that could allow an attacker to obtain sensitive information.

CVE-2017-12708 advantech vulnerability CVSS: 10.0 30 Aug 2017, 18:29 UTC

An Improper Restriction Of Operations Within The Bounds Of A Memory Buffer issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. Researchers have identified multiple vulnerabilities that allow invalid locations to be referenced for the memory buffer, which may allow an attacker to execute arbitrary code or cause the system to crash.

CVE-2017-12706 advantech vulnerability CVSS: 7.5 30 Aug 2017, 18:29 UTC

A stack-based buffer overflow issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. Researchers have identified multiple vulnerabilities where there is a lack of proper validation of the length of user-supplied data prior to copying it to a stack-based buffer, which could allow an attacker to execute arbitrary code under the context of the process.

CVE-2017-12704 advantech vulnerability CVSS: 6.8 30 Aug 2017, 18:29 UTC

A heap-based buffer overflow issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. Researchers have identified multiple vulnerabilities where there is a lack of proper validation of the length of user-supplied data prior to copying it to the heap-based buffer, which could allow an attacker to execute arbitrary code under the context of the process.

CVE-2017-12702 advantech vulnerability CVSS: 6.8 30 Aug 2017, 18:29 UTC

An Externally Controlled Format String issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. String format specifiers based on user provided input are not properly validated, which could allow an attacker to execute arbitrary code.

CVE-2017-12698 advantech vulnerability CVSS: 7.5 30 Aug 2017, 18:29 UTC

An Improper Authentication issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. Specially crafted requests allow a possible authentication bypass that could allow remote code execution.

CVE-2017-7929 advantech vulnerability CVSS: 5.5 06 May 2017, 00:29 UTC

An Absolute Path Traversal issue was discovered in Advantech WebAccess Version 8.1 and prior. The absolute path traversal vulnerability has been identified, which may allow an attacker to traverse the file system to access restricted files or directories.

CVE-2016-5810 advantech vulnerability CVSS: 4.0 02 May 2017, 14:59 UTC

upAdminPg.asp in Advantech WebAccess before 8.1_20160519 allows remote authenticated administrators to obtain sensitive password information via unspecified vectors.

CVE-2017-5154 advantech vulnerability CVSS: 7.5 13 Feb 2017, 21:59 UTC

An issue was discovered in Advantech WebAccess Version 8.1. To be able to exploit the SQL injection vulnerability, an attacker must supply malformed input to the WebAccess software. Successful attack could result in administrative access to the application and its data files.

CVE-2017-5152 advantech vulnerability CVSS: 6.4 13 Feb 2017, 21:59 UTC

An issue was discovered in Advantech WebAccess Version 8.1. By accessing a specific uniform resource locator (URL) on the web server, a malicious user is able to access pages unrestricted (AUTHENTICATION BYPASS).

CVE-2016-9353 advantech vulnerability CVSS: 7.2 13 Feb 2017, 21:59 UTC

An issue was discovered in Advantech SUISAccess Server Version 3.0 and prior. The admin password is stored in the system and is encrypted with a static key hard-coded in the program. Attackers could reverse the admin account password for use.

CVE-2016-9351 advantech vulnerability CVSS: 6.0 13 Feb 2017, 21:59 UTC

An issue was discovered in Advantech SUISAccess Server Version 3.0 and prior. The directory traversal/file upload error allows an attacker to upload and unpack a zip file.

CVE-2016-9349 advantech vulnerability CVSS: 5.0 13 Feb 2017, 21:59 UTC

An issue was discovered in Advantech SUISAccess Server Version 3.0 and prior. An attacker could traverse the file system and extract files that can result in information disclosure.

CVE-2016-4528 advantech vulnerability CVSS: 4.3 25 Jun 2016, 01:59 UTC

Buffer overflow in Advantech WebAccess before 8.1_20160519 allows local users to cause a denial of service via a crafted DLL file.

CVE-2016-4525 advantech vulnerability CVSS: 3.3 25 Jun 2016, 01:59 UTC

Unspecified ActiveX controls in Advantech WebAccess before 8.1_20160519 allow remote authenticated users to obtain sensitive information or modify data via unknown vectors, related to the INTERFACESAFE_FOR_UNTRUSTED_CALLER (aka safe for scripting) flag.

CVE-2016-2275 advantech vulnerability CVSS: 10.0 21 Feb 2016, 05:59 UTC

The web interface on Advantech/B+B SmartWorx VESP211-EU devices with firmware 1.7.2 and VESP211-232 devices with firmware 1.5.1 and 1.7.2 relies on the client to implement access control, which allows remote attackers to perform administrative actions via modified JavaScript code.

CVE-2016-0860 advantech vulnerability CVSS: 10.0 15 Jan 2016, 03:59 UTC

Buffer overflow in the BwpAlarm subsystem in Advantech WebAccess before 8.1 allows remote attackers to cause a denial of service via a crafted RPC request.

CVE-2016-0859 advantech vulnerability CVSS: 10.0 15 Jan 2016, 03:59 UTC

Integer overflow in the Kernel service in Advantech WebAccess before 8.1 allows remote attackers to execute arbitrary code or cause a denial of service (stack-based buffer overflow) via a crafted RPC request.

CVE-2016-0858 advantech vulnerability CVSS: 9.3 15 Jan 2016, 03:59 UTC

Race condition in Advantech WebAccess before 8.1 allows remote attackers to execute arbitrary code or cause a denial of service (buffer overflow) via a crafted request.

CVE-2016-0857 advantech vulnerability CVSS: 10.0 15 Jan 2016, 03:59 UTC

Multiple heap-based buffer overflows in Advantech WebAccess before 8.1 allow remote attackers to execute arbitrary code via unspecified vectors.

CVE-2016-0856 advantech vulnerability CVSS: 10.0 15 Jan 2016, 03:59 UTC

Multiple stack-based buffer overflows in Advantech WebAccess before 8.1 allow remote attackers to execute arbitrary code via unspecified vectors.

CVE-2016-0855 advantech vulnerability CVSS: 5.0 15 Jan 2016, 03:59 UTC

Directory traversal vulnerability in Advantech WebAccess before 8.1 allows remote attackers to list arbitrary virtual-directory files via unspecified vectors.

CVE-2016-0854 advantech vulnerability CVSS: 10.0 15 Jan 2016, 03:59 UTC

Unrestricted file upload vulnerability in the uploadImageCommon function in the UploadAjaxAction script in the WebAccess Dashboard Viewer in Advantech WebAccess before 8.1 allows remote attackers to write to files of arbitrary types via unspecified vectors.

CVE-2016-0853 advantech vulnerability CVSS: 5.0 15 Jan 2016, 03:59 UTC

Advantech WebAccess before 8.1 allows remote attackers to obtain sensitive information via crafted input.

CVE-2016-0852 advantech vulnerability CVSS: 5.0 15 Jan 2016, 03:59 UTC

Advantech WebAccess before 8.1 allows remote attackers to bypass an intended administrative requirement and obtain file or folder access via unspecified vectors.

CVE-2016-0851 advantech vulnerability CVSS: 7.8 15 Jan 2016, 03:59 UTC

Advantech WebAccess before 8.1 allows remote attackers to cause a denial of service (out-of-bounds memory access) via unspecified vectors.

CVE-2015-6467 advantech vulnerability CVSS: 9.3 15 Jan 2016, 03:59 UTC

Advantech WebAccess before 8.1 allows remote attackers to execute arbitrary code via vectors involving a browser plugin.

CVE-2015-3948 advantech vulnerability CVSS: 3.5 15 Jan 2016, 03:59 UTC

Cross-site scripting (XSS) vulnerability in Advantech WebAccess before 8.1 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.

CVE-2015-3947 advantech vulnerability CVSS: 6.5 15 Jan 2016, 03:59 UTC

SQL injection vulnerability in Advantech WebAccess before 8.1 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.

CVE-2015-3946 advantech vulnerability CVSS: 6.8 15 Jan 2016, 03:59 UTC

Cross-site request forgery (CSRF) vulnerability in Advantech WebAccess before 8.1 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.

CVE-2015-3943 advantech vulnerability CVSS: 5.0 15 Jan 2016, 03:59 UTC

Advantech WebAccess before 8.1 allows remote attackers to read sensitive cleartext information about e-mail project accounts via unspecified vectors.

CVE-2015-7938 advantech vulnerability CVSS: 10.0 09 Jan 2016, 02:59 UTC

Advantech EKI-132x devices with firmware before 2015-12-31 allow remote attackers to bypass authentication via unspecified vectors.

CVE-2015-6476 advantech vulnerability CVSS: 10.0 07 Nov 2015, 03:59 UTC

Advantech EKI-122x-BE devices with firmware before 1.65, EKI-132x devices with firmware before 1.98, and EKI-136x devices with firmware before 1.27 have hardcoded SSH keys, which makes it easier for remote attackers to obtain access via an SSH session.

CVE-2014-9202 advantech vulnerability CVSS: 6.9 28 Sep 2015, 02:59 UTC

Multiple stack-based buffer overflows in an unspecified DLL file in Advantech WebAccess before 8.0_20150816 allow remote attackers to execute arbitrary code via a crafted file that triggers long string arguments to functions.

CVE-2014-9208 advantech vulnerability CVSS: 10.0 11 Sep 2015, 16:59 UTC

Multiple stack-based buffer overflows in unspecified DLL files in Advantech WebAccess before 8.0.1 allow remote attackers to execute arbitrary code via unknown vectors.

CVE-2014-8386 advantech vulnerability CVSS: 7.5 20 Jan 2015, 15:59 UTC

Multiple stack-based buffer overflows in Advantech AdamView 4.3 and earlier allow remote attackers to execute arbitrary code via a crafted (1) display properties or (2) conditional bitmap parameter in a GNI file.

CVE-2014-8388 advantech vulnerability CVSS: 7.2 21 Nov 2014, 02:59 UTC

Stack-based buffer overflow in Advantech WebAccess, formerly BroadWin WebAccess, before 8.0 allows remote attackers to execute arbitrary code via a crafted ip_address parameter in an HTML document.

CVE-2014-8387 advantech vulnerability CVSS: 9.0 20 Nov 2014, 13:55 UTC

cgi/utility.cgi in Advantech EKI-6340 2.05 Wi-Fi Mesh Access Point allows remote authenticated users to execute arbitrary commands via shell metacharacters in the pinghost parameter to ping.cgi.

CVE-2014-0992 advantech vulnerability CVSS: 6.8 20 Sep 2014, 10:55 UTC

Stack-based buffer overflow in Advantech WebAccess (formerly BroadWin WebAccess) 7.2 allows remote attackers to execute arbitrary code via the password parameter.

CVE-2014-0991 advantech vulnerability CVSS: 6.8 20 Sep 2014, 10:55 UTC

Stack-based buffer overflow in Advantech WebAccess (formerly BroadWin WebAccess) 7.2 allows remote attackers to execute arbitrary code via the projectname parameter.

CVE-2014-0990 advantech vulnerability CVSS: 6.8 20 Sep 2014, 10:55 UTC

Stack-based buffer overflow in Advantech WebAccess (formerly BroadWin WebAccess) 7.2 allows remote attackers to execute arbitrary code via the UserName parameter.

CVE-2014-0989 advantech vulnerability CVSS: 6.8 20 Sep 2014, 10:55 UTC

Stack-based buffer overflow in Advantech WebAccess (formerly BroadWin WebAccess) 7.2 allows remote attackers to execute arbitrary code via the AccessCode2 parameter.

CVE-2014-0988 advantech vulnerability CVSS: 6.8 20 Sep 2014, 10:55 UTC

Stack-based buffer overflow in Advantech WebAccess (formerly BroadWin WebAccess) 7.2 allows remote attackers to execute arbitrary code via the AccessCode parameter.

CVE-2014-0987 advantech vulnerability CVSS: 6.8 20 Sep 2014, 10:55 UTC

Stack-based buffer overflow in Advantech WebAccess (formerly BroadWin WebAccess) 7.2 allows remote attackers to execute arbitrary code via the NodeName2 parameter.

CVE-2014-0986 advantech vulnerability CVSS: 6.8 20 Sep 2014, 10:55 UTC

Stack-based buffer overflow in Advantech WebAccess (formerly BroadWin WebAccess) 7.2 allows remote attackers to execute arbitrary code via the GotoCmd parameter.

CVE-2014-0985 advantech vulnerability CVSS: 6.8 20 Sep 2014, 10:55 UTC

Stack-based buffer overflow in Advantech WebAccess (formerly BroadWin WebAccess) 7.2 allows remote attackers to execute arbitrary code via the NodeName parameter.

CVE-2014-2368 advantech vulnerability CVSS: 5.0 19 Jul 2014, 05:09 UTC

The BrowseFolder method in the bwocxrun ActiveX control in Advantech WebAccess before 7.2 allows remote attackers to read arbitrary files via a crafted call.

CVE-2014-2367 advantech vulnerability CVSS: 4.3 19 Jul 2014, 05:09 UTC

The ChkCookie subroutine in an ActiveX control in broadweb/include/gChkCook.asp in Advantech WebAccess before 7.2 allows remote attackers to read arbitrary files via a crafted call.

CVE-2014-2366 advantech vulnerability CVSS: 4.0 19 Jul 2014, 05:09 UTC

upAdminPg.asp in Advantech WebAccess before 7.2 allows remote authenticated users to discover credentials by reading HTML source code.

CVE-2014-2365 advantech vulnerability CVSS: 5.5 19 Jul 2014, 05:09 UTC

Unspecified vulnerability in Advantech WebAccess before 7.2 allows remote authenticated users to create or delete arbitrary files via unknown vectors.

CVE-2014-2364 advantech vulnerability CVSS: 7.5 19 Jul 2014, 05:09 UTC

Multiple stack-based buffer overflows in Advantech WebAccess before 7.2 allow remote attackers to execute arbitrary code via a long string in the (1) ProjectName, (2) SetParameter, (3) NodeName, (4) CCDParameter, (5) SetColor, (6) AlarmImage, (7) GetParameter, (8) GetColor, (9) ServerResponse, (10) SetBaud, or (11) IPAddress parameter to an ActiveX control in (a) webvact.ocx, (b) dvs.ocx, or (c) webdact.ocx.

CVE-2014-0773 advantech vulnerability CVSS: 7.5 12 Apr 2014, 04:37 UTC

The CreateProcess method in the BWOCXRUN.BwocxrunCtrl.1 ActiveX control in bwocxrun.ocx in Advantech WebAccess before 7.2 allows remote attackers to execute (1) setup.exe, (2) bwvbprt.exe, and (3) bwvbprtl.exe programs from arbitrary pathnames via a crafted argument, as demonstrated by a UNC share pathname.

CVE-2014-0772 advantech vulnerability CVSS: 5.0 12 Apr 2014, 04:37 UTC

The OpenUrlToBufferTimeout method in the BWOCXRUN.BwocxrunCtrl.1 ActiveX control in bwocxrun.ocx in Advantech WebAccess before 7.2 allows remote attackers to read arbitrary files via a file: URL.

CVE-2014-0771 advantech vulnerability CVSS: 5.0 12 Apr 2014, 04:37 UTC

The OpenUrlToBuffer method in the BWOCXRUN.BwocxrunCtrl.1 ActiveX control in bwocxrun.ocx in Advantech WebAccess before 7.2 allows remote attackers to read arbitrary files via a file: URL.

CVE-2014-0770 advantech vulnerability CVSS: 7.5 12 Apr 2014, 04:37 UTC

Stack-based buffer overflow in Advantech WebAccess before 7.2 allows remote attackers to execute arbitrary code via a long UserName parameter.

CVE-2014-0768 advantech vulnerability CVSS: 7.5 12 Apr 2014, 04:37 UTC

Stack-based buffer overflow in Advantech WebAccess before 7.2 allows remote attackers to execute arbitrary code via a long AccessCode2 argument.

CVE-2014-0767 advantech vulnerability CVSS: 7.5 12 Apr 2014, 04:37 UTC

Stack-based buffer overflow in Advantech WebAccess before 7.2 allows remote attackers to execute arbitrary code via a long AccessCode argument.

CVE-2014-0766 advantech vulnerability CVSS: 7.5 12 Apr 2014, 04:37 UTC

Stack-based buffer overflow in Advantech WebAccess before 7.2 allows remote attackers to execute arbitrary code via a long NodeName2 argument.

CVE-2014-0765 advantech vulnerability CVSS: 7.5 12 Apr 2014, 04:37 UTC

Stack-based buffer overflow in Advantech WebAccess before 7.2 allows remote attackers to execute arbitrary code via a long GotoCmd argument.

CVE-2014-0764 advantech vulnerability CVSS: 7.5 12 Apr 2014, 04:37 UTC

Stack-based buffer overflow in Advantech WebAccess before 7.2 allows remote attackers to execute arbitrary code via a long NodeName parameter.

CVE-2014-0763 advantech vulnerability CVSS: 7.5 12 Apr 2014, 04:37 UTC

Multiple SQL injection vulnerabilities in DBVisitor.dll in Advantech WebAccess before 7.2 allow remote attackers to execute arbitrary SQL commands via SOAP requests to unspecified functions.

CVE-2013-2299 advantech vulnerability CVSS: 3.5 22 Aug 2013, 05:34 UTC

Cross-site scripting (XSS) vulnerability in Advantech WebAccess (formerly BroadWin WebAccess) before 7.1 2013.05.30 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.

CVE-2013-1627 advantech vulnerability CVSS: 7.8 11 Mar 2013, 17:55 UTC

Absolute path traversal vulnerability in NTWebServer.exe in Indusoft Studio 7.0 and earlier and Advantech Studio 7.0 and earlier allows remote attackers to read arbitrary files via a full pathname in an argument to the sub_401A90 CreateFileW function.

CVE-2012-1235 advantech vulnerability CVSS: 6.0 21 Feb 2012, 13:31 UTC

Cross-site request forgery (CSRF) vulnerability in Advantech/BroadWin WebAccess 7.0 allows remote authenticated users to hijack the authentication of unspecified victims via unknown vectors. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-0235.

CVE-2012-1234 advantech vulnerability CVSS: 6.5 21 Feb 2012, 13:31 UTC

SQL injection vulnerability in Advantech/BroadWin WebAccess 7.0 allows remote authenticated users to execute arbitrary SQL commands via a malformed URL. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-0234.

CVE-2012-0244 advantech vulnerability CVSS: 7.5 21 Feb 2012, 13:31 UTC

Multiple SQL injection vulnerabilities in Advantech/BroadWin WebAccess before 7.0 allow remote attackers to execute arbitrary SQL commands via crafted string input.

CVE-2012-0243 advantech vulnerability CVSS: 10.0 21 Feb 2012, 13:31 UTC

Buffer overflow in an ActiveX control in bwocxrun.ocx in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to execute arbitrary code by leveraging the ability to write arbitrary content to any pathname.

CVE-2012-0242 advantech vulnerability CVSS: 10.0 21 Feb 2012, 13:31 UTC

Format string vulnerability in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to execute arbitrary code via format string specifiers in a message string.

CVE-2012-0241 advantech vulnerability CVSS: 5.0 21 Feb 2012, 13:31 UTC

Advantech/BroadWin WebAccess before 7.0 allows remote attackers to cause a denial of service (memory corruption) via a modified stream identifier to a function.

CVE-2012-0240 advantech vulnerability CVSS: 10.0 21 Feb 2012, 13:31 UTC

GbScriptAddUp.asp in Advantech/BroadWin WebAccess before 7.0 does not properly perform authentication, which allows remote attackers to execute arbitrary code via unspecified vectors.

CVE-2012-0239 advantech vulnerability CVSS: 5.0 21 Feb 2012, 13:31 UTC

uaddUpAdmin.asp in Advantech/BroadWin WebAccess before 7.0 does not properly perform authentication, which allows remote attackers to modify an administrative password via a password-change request.

CVE-2012-0238 advantech vulnerability CVSS: 10.0 21 Feb 2012, 13:31 UTC

Stack-based buffer overflow in opcImg.asp in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to execute arbitrary code via unspecified vectors.

CVE-2012-0237 advantech vulnerability CVSS: 6.4 21 Feb 2012, 13:31 UTC

Advantech/BroadWin WebAccess before 7.0 allows remote attackers to (1) enable date and time syncing or (2) disable date and time syncing via a crafted URL.

CVE-2012-0236 advantech vulnerability CVSS: 5.0 21 Feb 2012, 13:31 UTC

Advantech/BroadWin WebAccess 7.0 and earlier allows remote attackers to obtain sensitive information via a direct request to a URL. NOTE: the vendor reportedly "does not consider it to be a security risk."

CVE-2012-0235 advantech vulnerability CVSS: 6.0 21 Feb 2012, 13:31 UTC

Cross-site request forgery (CSRF) vulnerability in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.

CVE-2012-0234 advantech vulnerability CVSS: 7.5 21 Feb 2012, 13:31 UTC

SQL injection vulnerability in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to execute arbitrary SQL commands via a malformed URL.

CVE-2012-0233 advantech vulnerability CVSS: 4.3 21 Feb 2012, 13:31 UTC

Cross-site scripting (XSS) vulnerability in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to inject arbitrary web script or HTML via a malformed URL.

CVE-2011-4526 advantech vulnerability CVSS: 10.0 21 Feb 2012, 13:31 UTC

Buffer overflow in an ActiveX control in Advantech/BroadWin WebAccess before 7.0 might allow remote attackers to execute arbitrary code via a long string value in unspecified parameters.

CVE-2011-4525 advantech vulnerability CVSS: 10.0 21 Feb 2012, 13:31 UTC

Advantech/BroadWin WebAccess before 7.0 allows remote attackers to trigger the extraction of arbitrary web content into a batch file on a client system, and execute this batch file, via unspecified vectors.

CVE-2011-4524 advantech vulnerability CVSS: 10.0 21 Feb 2012, 13:31 UTC

Buffer overflow in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to execute arbitrary code via a long string value in unspecified parameters.

CVE-2011-4523 advantech vulnerability CVSS: 4.3 21 Feb 2012, 13:31 UTC

Cross-site scripting (XSS) vulnerability in bwview.asp in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters.

CVE-2011-4522 advantech vulnerability CVSS: 4.3 21 Feb 2012, 13:31 UTC

Cross-site scripting (XSS) vulnerability in bwerrdn.asp in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters.

CVE-2011-4521 advantech vulnerability CVSS: 7.5 21 Feb 2012, 13:31 UTC

SQL injection vulnerability in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to execute arbitrary SQL commands via crafted string input.

CVE-2011-0340 advantech vulnerability CVSS: 9.3 04 May 2011, 22:55 UTC

Multiple buffer overflows in the ISSymbol ActiveX control in ISSymbol.ocx 61.6.0.0 and 301.1009.2904.0 in the ISSymbol virtual machine, as distributed in Advantech Studio 6.1 SP6 61.6.01.05, InduSoft Web Studio before 7.0+SP1, and InduSoft Thin Client 7.0, allow remote attackers to execute arbitrary code via a long (1) InternationalOrder, (2) InternationalSeparator, or (3) LogFileName property value; or (4) a long bstrFileName argument to the OpenScreen method.

CVE-2011-0488 advantech vulnerability CVSS: 10.0 18 Jan 2011, 18:03 UTC

Stack-based buffer overflow in NTWebServer.exe in the test web service in InduSoft NTWebServer, as distributed in Advantech Studio 6.1 and InduSoft Web Studio 7.0, allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a long request to TCP port 80.

CVE-2008-5848 advantech vulnerability CVSS: 10.0 06 Jan 2009, 17:30 UTC

The Advantech ADAM-6000 module has 00000000 as its default password, which makes it easier for remote attackers to obtain access through an HTTP session, and (1) monitor or (2) control the module's Modbus/TCP I/O activity.