Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
webaccess vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2012-0239
uaddUpAdmin.asp in Advantech/BroadWin WebAccess prior to 7.0 does not properly perform authentication, which allows remote malicious users to modify an administrative password via a password-change request.
Advantech Advantech Webaccess
Advantech Advantech Webaccess 5.0
NA
CVE-2012-0240
GbScriptAddUp.asp in Advantech/BroadWin WebAccess prior to 7.0 does not properly perform authentication, which allows remote malicious users to execute arbitrary code via unspecified vectors.
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
NA
CVE-2012-0233
Cross-site scripting (XSS) vulnerability in Advantech/BroadWin WebAccess prior to 7.0 allows remote malicious users to inject arbitrary web script or HTML via a malformed URL.
Advantech Advantech Webaccess
Advantech Advantech Webaccess 5.0
NA
CVE-2012-0235
Cross-site request forgery (CSRF) vulnerability in Advantech/BroadWin WebAccess prior to 7.0 allows remote malicious users to hijack the authentication of unspecified victims via unknown vectors.
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
NA
CVE-2012-0238
Stack-based buffer overflow in opcImg.asp in Advantech/BroadWin WebAccess prior to 7.0 allows remote malicious users to execute arbitrary code via unspecified vectors.
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
NA
CVE-2012-0241
Advantech/BroadWin WebAccess prior to 7.0 allows remote malicious users to cause a denial of service (memory corruption) via a modified stream identifier to a function.
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
2 EDB exploits
NA
CVE-2012-0243
Buffer overflow in an ActiveX control in bwocxrun.ocx in Advantech/BroadWin WebAccess prior to 7.0 allows remote malicious users to execute arbitrary code by leveraging the ability to write arbitrary content to any pathname.
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
NA
CVE-2012-0244
Multiple SQL injection vulnerabilities in Advantech/BroadWin WebAccess prior to 7.0 allow remote malicious users to execute arbitrary SQL commands via crafted string input.
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
NA
CVE-2012-0242
Format string vulnerability in Advantech/BroadWin WebAccess prior to 7.0 allows remote malicious users to execute arbitrary code via format string specifiers in a message string.
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
1 EDB exploit
NA
CVE-2005-2276
Cross-site scripting (XSS) vulnerability in Novell Groupwise WebAccess 6.5 before July 11, 2005 allows remote malicious users to inject arbitrary web script or HTML via an e-mail message with an encoded javascript URI (e.g. "jAvascript" in an IMG tag.
Novell Groupwise Webaccess 6.5
Novell Groupwise Webaccess 6.0
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
inject
CVE-2024-34001
CVE-2024-37018
LFI
CVE-2024-1275
CVE-2024-1086
CSRF
CVE-2024-31030
CVE-2024-24919
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »