Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2025-46704

A vulnerability exists in Advantech iView in NetworkServlet.processImportRequest() that could allow for a directory traversal attack. This issue requires an authenticated attacker with at least user-level privileges. A specific parameter is not properly sanitized or normalized, potentially allowing an attacker to determine the existence of arbitrary files on the server.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 8.9%
CVSS Severity
CVSS v3 Score 4.3
Products affected by CVE-2025-46704
  • Advantech » Iview » Version: 5.6
    cpe:2.3:a:advantech:iview:5.6
  • Advantech » Iview » Version: 5.7
    cpe:2.3:a:advantech:iview:5.7
  • Advantech » Iview » Version: 5.7.02
    cpe:2.3:a:advantech:iview:5.7.02
  • Advantech » Iview » Version: 5.7.03.6112
    cpe:2.3:a:advantech:iview:5.7.03.6112
  • Advantech » Iview » Version: 5.7.03.6182
    cpe:2.3:a:advantech:iview:5.7.03.6182
  • Advantech » Iview » Version: 5.7.04.6469
    cpe:2.3:a:advantech:iview:5.7.04.6469
  • Advantech » Iview » Version: 5.7.04.6583
    cpe:2.3:a:advantech:iview:5.7.04.6583
  • Advantech » Iview » Version: 5.7.04.6752
    cpe:2.3:a:advantech:iview:5.7.04.6752


Contact Us

Shodan ® - All rights reserved