Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
broadwin webaccess vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2012-1235
Cross-site request forgery (CSRF) vulnerability in Advantech/BroadWin WebAccess 7.0 allows remote authenticated users to hijack the authentication of unspecified victims via unknown vectors. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-0235.
Advantech Advantech Webaccess
Advantech Advantech Webaccess 5.0
NA
CVE-2012-0233
Cross-site scripting (XSS) vulnerability in Advantech/BroadWin WebAccess prior to 7.0 allows remote malicious users to inject arbitrary web script or HTML via a malformed URL.
Advantech Advantech Webaccess
Advantech Advantech Webaccess 5.0
NA
CVE-2012-0234
SQL injection vulnerability in Advantech/BroadWin WebAccess prior to 7.0 allows remote malicious users to execute arbitrary SQL commands via a malformed URL.
Advantech Advantech Webaccess
Advantech Advantech Webaccess 5.0
NA
CVE-2012-0235
Cross-site request forgery (CSRF) vulnerability in Advantech/BroadWin WebAccess prior to 7.0 allows remote malicious users to hijack the authentication of unspecified victims via unknown vectors.
Advantech Advantech Webaccess
Advantech Advantech Webaccess 5.0
NA
CVE-2012-0236
Advantech/BroadWin WebAccess 7.0 and previous versions allows remote malicious users to obtain sensitive information via a direct request to a URL. NOTE: the vendor reportedly "does not consider it to be a security risk."
Advantech Advantech Webaccess
Advantech Advantech Webaccess 5.0
NA
CVE-2012-0238
Stack-based buffer overflow in opcImg.asp in Advantech/BroadWin WebAccess prior to 7.0 allows remote malicious users to execute arbitrary code via unspecified vectors.
Advantech Advantech Webaccess
Advantech Advantech Webaccess 5.0
NA
CVE-2012-0239
uaddUpAdmin.asp in Advantech/BroadWin WebAccess prior to 7.0 does not properly perform authentication, which allows remote malicious users to modify an administrative password via a password-change request.
Advantech Advantech Webaccess
Advantech Advantech Webaccess 5.0
NA
CVE-2012-0240
GbScriptAddUp.asp in Advantech/BroadWin WebAccess prior to 7.0 does not properly perform authentication, which allows remote malicious users to execute arbitrary code via unspecified vectors.
Advantech Advantech Webaccess
Advantech Advantech Webaccess 5.0
NA
CVE-2012-0241
Advantech/BroadWin WebAccess prior to 7.0 allows remote malicious users to cause a denial of service (memory corruption) via a modified stream identifier to a function.
Advantech Advantech Webaccess
Advantech Advantech Webaccess 5.0
2 EDB exploits
NA
CVE-2012-0243
Buffer overflow in an ActiveX control in bwocxrun.ocx in Advantech/BroadWin WebAccess prior to 7.0 allows remote malicious users to execute arbitrary code by leveraging the ability to write arbitrary content to any pathname.
Advantech Advantech Webaccess
Advantech Advantech Webaccess 5.0
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-37316
firmware
CVE-2024-30078
CVE-2024-5995
remote code execution
logic flaw
CVE-2024-20693
CVE-2024-37315
CVE-2024-5464
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
NEXT »