The VBWinExec function in Node\AspVBObj.dll in Advantech WebAccess 8.3.0 allows remote malicious users to execute arbitrary OS commands via a single argument (aka the command parameter).
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
advantech webaccess 8.3.0 |