Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
advantech vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2014-0763
Multiple SQL injection vulnerabilities in DBVisitor.dll in Advantech WebAccess prior to 7.2 allow remote malicious users to execute arbitrary SQL commands via SOAP requests to unspecified functions.
Advantech Advantech Webaccess 6.0
Advantech Advantech Webaccess
Advantech Advantech Webaccess 7.0
Advantech Advantech Webaccess 5.0
NA
CVE-2014-0765
Stack-based buffer overflow in Advantech WebAccess prior to 7.2 allows remote malicious users to execute arbitrary code via a long GotoCmd argument.
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess 7.0
Advantech Advantech Webaccess 6.0
Advantech Advantech Webaccess
NA
CVE-2014-0768
Stack-based buffer overflow in Advantech WebAccess prior to 7.2 allows remote malicious users to execute arbitrary code via a long AccessCode2 argument.
Advantech Advantech Webaccess 6.0
Advantech Advantech Webaccess
Advantech Advantech Webaccess 7.0
Advantech Advantech Webaccess 5.0
NA
CVE-2014-0770
Stack-based buffer overflow in Advantech WebAccess prior to 7.2 allows remote malicious users to execute arbitrary code via a long UserName parameter.
Advantech Advantech Webaccess
Advantech Advantech Webaccess 7.0
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess 6.0
NA
CVE-2014-0772
The OpenUrlToBufferTimeout method in the BWOCXRUN.BwocxrunCtrl.1 ActiveX control in bwocxrun.ocx in Advantech WebAccess prior to 7.2 allows remote malicious users to read arbitrary files via a file: URL.
Advantech Advantech Webaccess 6.0
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
Advantech Advantech Webaccess 7.0
NA
CVE-2013-2299
Cross-site scripting (XSS) vulnerability in Advantech WebAccess (formerly BroadWin WebAccess) prior to 7.1 2013.05.30 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
Advantech Advantech Webaccess 6.0
1 EDB exploit
NA
CVE-2008-5848
The Advantech ADAM-6000 module has 00000000 as its default password, which makes it easier for remote malicious users to obtain access through an HTTP session, and (1) monitor or (2) control the module's Modbus/TCP I/O activity.
Advantech Adam-6015
Advantech Adam-6022
Advantech Adam-6050w
Advantech Adam-6060
Advantech Adam-6050
Advantech Adam-6051
Advantech Adam-6024
Advantech Adam-6060w
Advantech Adam-6018
Advantech Adam-6501
Advantech Adam-6017
Advantech Adam-6051w
Advantech Adam-6066
Advantech Adam-6052
NA
CVE-2012-0237
Advantech/BroadWin WebAccess prior to 7.0 allows remote malicious users to (1) enable date and time syncing or (2) disable date and time syncing via a crafted URL.
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
NA
CVE-2012-0238
Stack-based buffer overflow in opcImg.asp in Advantech/BroadWin WebAccess prior to 7.0 allows remote malicious users to execute arbitrary code via unspecified vectors.
Advantech Advantech Webaccess 5.0
Advantech Advantech Webaccess
NA
CVE-2012-0239
uaddUpAdmin.asp in Advantech/BroadWin WebAccess prior to 7.0 does not properly perform authentication, which allows remote malicious users to modify an administrative password via a password-change request.
Advantech Advantech Webaccess
Advantech Advantech Webaccess 5.0
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
man-in-the-middle
CVE-2024-34558
CVE-2024-32674
CVE-2024-34351
XPath injection
CVE-2023-45866
CVE-2024-25528
CVE-2024-25517
path traversal
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »