Vulnerabilities
Vulnerable Software
Advantech:  Security Vulnerabilities
Stack-based buffer overflow in Advantech WebAccess/SCADA 8.4.0 allows a remote, unauthenticated attacker to execute arbitrary code by sending a crafted IOCTL 81024 RPC call.
CVSS Score
9.8
EPSS Score
0.06
Published
2019-06-19
Stack-based buffer overflow in Advantech WebAccess/SCADA 8.4.0 allows a remote, unauthenticated attacker to execute arbitrary code by sending a crafted IOCTL 10012 RPC call.
CVSS Score
9.8
EPSS Score
0.06
Published
2019-06-18
Advantech WebAccess 8.3.4 is vulnerable to file upload attacks via unauthenticated RPC call. An unauthenticated, remote attacker can use this vulnerability to execute arbitrary code.
CVSS Score
9.8
EPSS Score
0.043
Published
2019-04-09
Advantech WebAccess 8.3.4 allows unauthenticated, remote attackers to delete arbitrary files via IOCTL 10005 RPC.
CVSS Score
7.5
EPSS Score
0.031
Published
2019-04-09
Advantech WebAccess/SCADA, Versions 8.3.5 and prior. Multiple stack-based buffer overflow vulnerabilities, caused by a lack of proper validation of the length of user-supplied data, may allow remote code execution.
CVSS Score
9.8
EPSS Score
0.036
Published
2019-04-05
Advantech WebAccess/SCADA, Versions 8.3.5 and prior. Multiple command injection vulnerabilities, caused by a lack of proper validation of user-supplied data, may allow remote code execution.
CVSS Score
9.8
EPSS Score
0.016
Published
2019-04-05
Advantech WebAccess/SCADA, Versions 8.3.5 and prior. An improper access control vulnerability may allow an attacker to cause a denial-of-service condition.
CVSS Score
7.5
EPSS Score
0.002
Published
2019-04-05
WebAccess/SCADA, Version 8.3. An improper authentication vulnerability exists that could allow a possible authentication bypass allowing an attacker to upload malicious data.
CVSS Score
9.8
EPSS Score
0.031
Published
2019-02-05
WebAccess/SCADA, Version 8.3. Specially crafted requests could allow a possible authentication bypass that could allow an attacker to obtain and manipulate sensitive information.
CVSS Score
8.6
EPSS Score
0.017
Published
2019-02-05
WebAccess/SCADA, Version 8.3. The software does not properly sanitize its inputs for SQL commands.
CVSS Score
9.8
EPSS Score
0.009
Published
2019-02-05


Contact Us

Shodan ® - All rights reserved