Vulnerabilities
Vulnerable Software
Advantech:  >> Iview  Security Vulnerabilities
Advantech iView, versions 5.6 and prior, contains multiple SQL injection vulnerabilities that are vulnerable to the use of an attacker-controlled string in the construction of SQL queries. An attacker could extract user credentials, read or modify information, and remotely execute code.
CVSS Score
9.8
EPSS Score
0.012
Published
2020-07-15
Advantech iView, versions 5.6 and prior, has an improper neutralization of special elements used in a command (“command injection”) vulnerability. Successful exploitation of this vulnerability may allow an attacker to send a HTTP GET or POST request that creates a command string without any validation. The attacker may then remotely execute code.
CVSS Score
9.8
EPSS Score
0.03
Published
2020-07-15
Advantech iView, versions 5.6 and prior, is vulnerable to multiple path traversal vulnerabilities that could allow an attacker to create/download arbitrary files, limit system availability, and remotely execute code.
CVSS Score
9.8
EPSS Score
0.014
Published
2020-07-15


Contact Us

Shodan ® - All rights reserved