Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
advantech vulnerabilities and exploits
(subscribe to this query)
490
VMScore
CVE-2014-2365
Unspecified vulnerability in Advantech WebAccess prior to 7.2 allows remote authenticated users to create or delete arbitrary files via unknown vectors.
Advantech Advantech Webaccess 7.0
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess 6.0
Advantech Advantech Webaccess
356
VMScore
CVE-2014-2366
upAdminPg.asp in Advantech WebAccess prior to 7.2 allows remote authenticated users to discover credentials by reading HTML source code.
Advantech Advantech Webaccess 6.0
Advantech Advantech Webaccess
Advantech Advantech Webaccess 7.0
Advantech Advantech Webaccess 5.0
383
VMScore
CVE-2014-2367
The ChkCookie subroutine in an ActiveX control in broadweb/include/gChkCook.asp in Advantech WebAccess prior to 7.2 allows remote malicious users to read arbitrary files via a crafted call.
Advantech Advantech Webaccess
Advantech Advantech Webaccess 7.0
Advantech Advantech Webaccess 6.0
Advantech Advantech Webaccess 5.0
445
VMScore
CVE-2014-2368
The BrowseFolder method in the bwocxrun ActiveX control in Advantech WebAccess prior to 7.2 allows remote malicious users to read arbitrary files via a crafted call.
Advantech Advantech Webaccess 7.0
Advantech Advantech Webaccess 6.0
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
790
VMScore
CVE-2014-0763
Multiple SQL injection vulnerabilities in DBVisitor.dll in Advantech WebAccess prior to 7.2 allow remote malicious users to execute arbitrary SQL commands via SOAP requests to unspecified functions.
Advantech Advantech Webaccess 6.0
Advantech Advantech Webaccess
Advantech Advantech Webaccess 7.0
Advantech Advantech Webaccess 5.0
355
VMScore
CVE-2013-2299
Cross-site scripting (XSS) vulnerability in Advantech WebAccess (formerly BroadWin WebAccess) prior to 7.1 2013.05.30 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
Advantech Advantech Webaccess 6.0
1 EDB exploit
890
VMScore
CVE-2008-5848
The Advantech ADAM-6000 module has 00000000 as its default password, which makes it easier for remote malicious users to obtain access through an HTTP session, and (1) monitor or (2) control the module's Modbus/TCP I/O activity.
Advantech Adam-6015
Advantech Adam-6022
Advantech Adam-6050w
Advantech Adam-6060
Advantech Adam-6050
Advantech Adam-6051
Advantech Adam-6024
Advantech Adam-6060w
Advantech Adam-6018
Advantech Adam-6501
Advantech Adam-6017
Advantech Adam-6051w
Advantech Adam-6066
Advantech Adam-6052
668
VMScore
CVE-2012-0234
SQL injection vulnerability in Advantech/BroadWin WebAccess prior to 7.0 allows remote malicious users to execute arbitrary SQL commands via a malformed URL.
Advantech Advantech Webaccess
Advantech Advantech Webaccess 5.0
534
VMScore
CVE-2012-0235
Cross-site request forgery (CSRF) vulnerability in Advantech/BroadWin WebAccess prior to 7.0 allows remote malicious users to hijack the authentication of unspecified victims via unknown vectors.
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
570
VMScore
CVE-2012-0237
Advantech/BroadWin WebAccess prior to 7.0 allows remote malicious users to (1) enable date and time syncing or (2) disable date and time syncing via a crafted URL.
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
validation
CVE-2012-1823
malicious code
CVE-2024-5770
CVE-2023-45866
CVE-2024-35687
local users
CVE-2024-31246
CVE-2024-35730
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »