Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
advantech vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2014-2364
Multiple stack-based buffer overflows in Advantech WebAccess prior to 7.2 allow remote malicious users to execute arbitrary code via a long string in the (1) ProjectName, (2) SetParameter, (3) NodeName, (4) CCDParameter, (5) SetColor, (6) AlarmImage, (7) GetParameter, (8) GetColo...
Advantech Advantech Webaccess 7.0
Advantech Advantech Webaccess 6.0
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
1 EDB exploit
NA
CVE-2014-2365
Unspecified vulnerability in Advantech WebAccess prior to 7.2 allows remote authenticated users to create or delete arbitrary files via unknown vectors.
Advantech Advantech Webaccess 7.0
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess 6.0
Advantech Advantech Webaccess
NA
CVE-2014-2366
upAdminPg.asp in Advantech WebAccess prior to 7.2 allows remote authenticated users to discover credentials by reading HTML source code.
Advantech Advantech Webaccess 6.0
Advantech Advantech Webaccess
Advantech Advantech Webaccess 7.0
Advantech Advantech Webaccess 5.0
NA
CVE-2014-2367
The ChkCookie subroutine in an ActiveX control in broadweb/include/gChkCook.asp in Advantech WebAccess prior to 7.2 allows remote malicious users to read arbitrary files via a crafted call.
Advantech Advantech Webaccess
Advantech Advantech Webaccess 7.0
Advantech Advantech Webaccess 6.0
Advantech Advantech Webaccess 5.0
NA
CVE-2014-2368
The BrowseFolder method in the bwocxrun ActiveX control in Advantech WebAccess prior to 7.2 allows remote malicious users to read arbitrary files via a crafted call.
Advantech Advantech Webaccess 7.0
Advantech Advantech Webaccess 6.0
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
NA
CVE-2013-2299
Cross-site scripting (XSS) vulnerability in Advantech WebAccess (formerly BroadWin WebAccess) prior to 7.1 2013.05.30 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
Advantech Advantech Webaccess 6.0
1 EDB exploit
NA
CVE-2008-5848
The Advantech ADAM-6000 module has 00000000 as its default password, which makes it easier for remote malicious users to obtain access through an HTTP session, and (1) monitor or (2) control the module's Modbus/TCP I/O activity.
Advantech Adam-6015
Advantech Adam-6022
Advantech Adam-6050w
Advantech Adam-6060
Advantech Adam-6050
Advantech Adam-6051
Advantech Adam-6024
Advantech Adam-6060w
Advantech Adam-6018
Advantech Adam-6501
Advantech Adam-6017
Advantech Adam-6051w
Advantech Adam-6066
Advantech Adam-6052
NA
CVE-2011-4521
SQL injection vulnerability in Advantech/BroadWin WebAccess prior to 7.0 allows remote malicious users to execute arbitrary SQL commands via crafted string input.
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
NA
CVE-2011-4523
Cross-site scripting (XSS) vulnerability in bwview.asp in Advantech/BroadWin WebAccess prior to 7.0 allows remote malicious users to inject arbitrary web script or HTML via unspecified parameters.
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
NA
CVE-2012-0236
Advantech/BroadWin WebAccess 7.0 and previous versions allows remote malicious users to obtain sensitive information via a direct request to a URL. NOTE: the vendor reportedly "does not consider it to be a security risk."
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-52710
arbitrary
CVE-2024-5272
CVE-2024-2961
brute force
remote
CVE-2024-32944
CVE-2024-36241
CVE-2024-5274
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »