10
CVSSv2

CVE-2017-16720

Published: 05/01/2018 Updated: 09/10/2019
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

A Path Traversal issue exists in WebAccess versions 8.3.2 and previous versions. An attacker has access to files within the directory structure of the target device.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

advantech webaccess

Exploits

#!/usr/bin/python27 # Exploit Title: Advantech WebAccess < 83 webvrpcs Directory Traversal RCE Vulnerability # Date: 03-11-2018 # Exploit Author: Chris Lyne (@lynerc) # Vendor Homepage: wwwadvantechcom # Software Link: advcloudfilesadvantechcom/web/Download/webaccess/82/AdvantechWebAccessUSANode82_20170817exe # Version: Advant ...
Advantech WebAccess versions less than 83 suffer from directory traversal and remote code execution vulnerabilities ...