Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
advantech vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2012-0234
SQL injection vulnerability in Advantech/BroadWin WebAccess prior to 7.0 allows remote malicious users to execute arbitrary SQL commands via a malformed URL.
Advantech Advantech Webaccess
Advantech Advantech Webaccess 5.0
NA
CVE-2012-0235
Cross-site request forgery (CSRF) vulnerability in Advantech/BroadWin WebAccess prior to 7.0 allows remote malicious users to hijack the authentication of unspecified victims via unknown vectors.
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
NA
CVE-2012-0236
Advantech/BroadWin WebAccess 7.0 and previous versions allows remote malicious users to obtain sensitive information via a direct request to a URL. NOTE: the vendor reportedly "does not consider it to be a security risk."
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
NA
CVE-2012-0238
Stack-based buffer overflow in opcImg.asp in Advantech/BroadWin WebAccess prior to 7.0 allows remote malicious users to execute arbitrary code via unspecified vectors.
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
NA
CVE-2012-0241
Advantech/BroadWin WebAccess prior to 7.0 allows remote malicious users to cause a denial of service (memory corruption) via a modified stream identifier to a function.
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
2 EDB exploits
NA
CVE-2012-0243
Buffer overflow in an ActiveX control in bwocxrun.ocx in Advantech/BroadWin WebAccess prior to 7.0 allows remote malicious users to execute arbitrary code by leveraging the ability to write arbitrary content to any pathname.
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
NA
CVE-2012-0244
Multiple SQL injection vulnerabilities in Advantech/BroadWin WebAccess prior to 7.0 allow remote malicious users to execute arbitrary SQL commands via crafted string input.
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
NA
CVE-2015-6476
Advantech EKI-122x-BE devices with firmware prior to 1.65, EKI-132x devices with firmware prior to 1.98, and EKI-136x devices with firmware prior to 1.27 have hardcoded SSH keys, which makes it easier for remote malicious users to obtain access via an SSH session.
Advantech Eki-1322 Series Firmware
Advantech Eki-1321 Series Firmware
Advantech Eki-1361 Series Firmware
Advantech Eki-1362 Series Firmware
Advantech Eki-122x Series Firmware
7.5
CVSSv3
CVE-2018-7495
In Advantech WebAccess versions V8.2_20170817 and prior, WebAccess versions V8.3.0 and prior, WebAccess Dashboard versions V.2.0.15 and prior, WebAccess Scada Node versions before 8.3.1, and WebAccess/NMS 2.0.3 and prior, an external control of file name or path vulnerability has...
Advantech Webaccess
Advantech Webaccess Dashboard
Advantech Webaccess Scada
Advantech Webaccess\\/nms
9.8
CVSSv3
CVE-2018-7497
In Advantech WebAccess versions V8.2_20170817 and prior, WebAccess versions V8.3.0 and prior, WebAccess Dashboard versions V.2.0.15 and prior, WebAccess Scada Node versions before 8.3.1, and WebAccess/NMS 2.0.3 and prior, several untrusted pointer dereference vulnerabilities have...
Advantech Webaccess
Advantech Webaccess Dashboard
Advantech Webaccess Scada
Advantech Webaccess\\/nms
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-27322
cross-site request forgery
unauthorized
CVE-2024-33925
reflected XSS
CVE-2023-51580
CVE-2023-51579
CVE-2015-2051
CVE-2023-51609
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
NEXT »