Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
advantech vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2012-0233
Cross-site scripting (XSS) vulnerability in Advantech/BroadWin WebAccess prior to 7.0 allows remote malicious users to inject arbitrary web script or HTML via a malformed URL.
Advantech Advantech Webaccess
Advantech Advantech Webaccess 5.0
6
CVSSv2
CVE-2012-0235
Cross-site request forgery (CSRF) vulnerability in Advantech/BroadWin WebAccess prior to 7.0 allows remote malicious users to hijack the authentication of unspecified victims via unknown vectors.
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
10
CVSSv2
CVE-2012-0238
Stack-based buffer overflow in opcImg.asp in Advantech/BroadWin WebAccess prior to 7.0 allows remote malicious users to execute arbitrary code via unspecified vectors.
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
5
CVSSv2
CVE-2012-0241
Advantech/BroadWin WebAccess prior to 7.0 allows remote malicious users to cause a denial of service (memory corruption) via a modified stream identifier to a function.
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
2 EDB exploits
10
CVSSv2
CVE-2012-0243
Buffer overflow in an ActiveX control in bwocxrun.ocx in Advantech/BroadWin WebAccess prior to 7.0 allows remote malicious users to execute arbitrary code by leveraging the ability to write arbitrary content to any pathname.
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
7.5
CVSSv2
CVE-2012-0244
Multiple SQL injection vulnerabilities in Advantech/BroadWin WebAccess prior to 7.0 allow remote malicious users to execute arbitrary SQL commands via crafted string input.
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
10
CVSSv2
CVE-2012-0242
Format string vulnerability in Advantech/BroadWin WebAccess prior to 7.0 allows remote malicious users to execute arbitrary code via format string specifiers in a message string.
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
1 EDB exploit
10
CVSSv2
CVE-2015-6476
Advantech EKI-122x-BE devices with firmware prior to 1.65, EKI-132x devices with firmware prior to 1.98, and EKI-136x devices with firmware prior to 1.27 have hardcoded SSH keys, which makes it easier for remote malicious users to obtain access via an SSH session.
Advantech Eki-1322 Series Firmware
Advantech Eki-1321 Series Firmware
Advantech Eki-1361 Series Firmware
Advantech Eki-1362 Series Firmware
Advantech Eki-122x Series Firmware
7.5
CVSSv2
CVE-2018-8845
In Advantech WebAccess versions V8.2_20170817 and prior, WebAccess versions V8.3.0 and prior, WebAccess Dashboard versions V.2.0.15 and prior, WebAccess Scada Node versions before 8.3.1, and WebAccess/NMS 2.0.3 and prior, a heap-based buffer overflow vulnerability has been identi...
Advantech Webaccess
Advantech Webaccess Dashboard
Advantech Webaccess Scada
Advantech Webaccess\\/nms
6.4
CVSSv2
CVE-2018-7495
In Advantech WebAccess versions V8.2_20170817 and prior, WebAccess versions V8.3.0 and prior, WebAccess Dashboard versions V.2.0.15 and prior, WebAccess Scada Node versions before 8.3.1, and WebAccess/NMS 2.0.3 and prior, an external control of file name or path vulnerability has...
Advantech Webaccess
Advantech Webaccess Dashboard
Advantech Webaccess Scada
Advantech Webaccess\\/nms
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
inject
CVE-2024-34001
CVE-2024-37018
LFI
CVE-2024-1275
CVE-2024-1086
CSRF
CVE-2024-31030
CVE-2024-24919
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
NEXT »