Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
advantech vulnerabilities and exploits
(subscribe to this query)
7.8
CVSSv2
CVE-2016-0851
Advantech WebAccess prior to 8.1 allows remote malicious users to cause a denial of service (out-of-bounds memory access) via unspecified vectors.
Advantech Webaccess
7.8
CVSSv2
CVE-2013-1627
Absolute path traversal vulnerability in NTWebServer.exe in Indusoft Studio 7.0 and previous versions and Advantech Studio 7.0 and previous versions allows remote malicious users to read arbitrary files via a full pathname in an argument to the sub_401A90 CreateFileW function.
Indusoft Web Studio 6.1
Advantech Advantech Studio 6.1
Indusoft Web Studio 7.0b2
Indusoft Web Studio 7.0
1 EDB exploit
7.5
CVSSv2
CVE-2022-22987
The affected product has a hardcoded private key available inside the project folder, which may allow an malicious user to achieve Web Server login and perform further actions.
Advantech Adam-3600 Firmware
7.5
CVSSv2
CVE-2021-38389
Advantech WebAccess versions 9.02 and prior are vulnerable to a stack-based buffer overflow, which may allow an malicious user to remotely execute code.
Advantech Webaccess
7.5
CVSSv2
CVE-2021-33023
Advantech WebAccess versions 9.02 and prior are vulnerable to a heap-based buffer overflow, which may allow an malicious user to remotely execute code.
Advantech Webaccess
7.5
CVSSv2
CVE-2021-38408
A stack-based buffer overflow vulnerability in Advantech WebAccess Versions 9.02 and prior caused by a lack of proper validation of the length of user-supplied data may allow remote code execution.
Advantech Webaccess
7.5
CVSSv2
CVE-2021-32943
The affected product is vulnerable to a stack-based buffer overflow, which may allow an malicious user to remotely execute arbitrary code on the WebAccess/SCADA (WebAccess/SCADA versions before 8.4.5, WebAccess/SCADA versions before 9.0.1).
Advantech Webaccess\\/scada
7.5
CVSSv2
CVE-2021-21804
A local file inclusion (LFI) vulnerability exists in the options.php script functionality of Advantech R-SeeNet v 2.4.12 (20.10.2020). A specially crafted HTTP request can lead to arbitrary PHP code execution. An attacker can send a crafted HTTP request to trigger this vulnerabil...
Advantech R-seenet 2.4.12
7.5
CVSSv2
CVE-2021-32930
The affected product’s configuration is vulnerable due to missing authentication, which may allow an malicious user to change configurations and execute arbitrary code on the iView (versions prior to v5.7.03.6182).
Advantech Iview
7.5
CVSSv2
CVE-2019-18235
Advantech Spectre RT ERT351 Versions 5.1.3 and prior has insufficient login authentication parameters required for the web application may allow an malicious user to gain full access using a brute-force password attack.
Advantech Spectre Rt Ert351 Firmware
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
client side
CVE-2023-31889
template injection
CVE-2024-4304
CVE-2006-4304
CVE-2024-33272
type confusion
CVE-2024-21345
CVE-2024-33271
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »