7.8
CVSSv3

CVE-2023-2866

Published: 07/06/2023 Updated: 15/06/2023
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

If an attacker can trick an authenticated user into loading a maliciously crafted .zip file onto Advantech WebAccess version 8.4.5, a web shell could be used to give the attacker full control of the SCADA server.

Vulnerable Product Search on Vulmon Subscribe to Product

advantech webaccess 8.4.5