Advantech / WebAccess/SCADA
16 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-6888 | SQL Injection Vulnerability | HIGH | 7.2 | May 13, 2026 |
| CVE-2025-67653 | Advantech WebAccess/SCADA Path Traversal | MEDIUM | 5.3 | Dec 18, 2025 |
| CVE-2025-46268 | Advantech WebAccess/SCADA SQL Injection | MEDIUM | 5.3 | Dec 18, 2025 |
| CVE-2025-14848 | Advantech WebAccess/SCADA Absolute Path Traversal | MEDIUM | 5.3 | Dec 18, 2025 |
| CVE-2025-14849 | Advantech WebAccess/SCADA Unrestricted Upload of File with Dangerous Type | HIGH | 8.7 | Dec 18, 2025 |
| CVE-2025-14850 | Advantech WebAccess/SCADA Improper Limitation of a Pathname to a Restricted Directory | HIGH | 7.2 | Dec 18, 2025 |
| CVE-2024-2453 | Advantech WebAccess/SCADA SQL Injection | MEDIUM | 6.4 | Mar 21, 2024 |
| CVE-2023-1437 | CVE-2023-1437 | CRITICAL | 9.8 | Aug 2, 2023 |
| CVE-2023-2866 | Advantech WebAccess Insufficient Type Distinction | HIGH | 7.8 | Jun 7, 2023 |
| CVE-2023-22450 | In Advantech WebAccss/SCADA v9.1.3 and prior, there is an arbitrary file upload vulnerability that could allow an attacker to upload an ASP script file to a we… | HIGH | 7.2 | Jun 5, 2023 |
| CVE-2023-32540 | In Advantech WebAccss/SCADA v9.1.3 and prior, there is an arbitrary file overwrite vulnerability, which could allow an attacker to overwrite any file in the op… | CRITICAL | 9.8 | Jun 5, 2023 |
| CVE-2023-32628 | In Advantech WebAccss/SCADA v9.1.3 and prior, there is an arbitrary file upload vulnerability that could allow an attacker to modify the file extension of a ce… | CRITICAL | 9.8 | Jun 5, 2023 |
| CVE-2019-3975 | Stack-based buffer overflow in Advantech WebAccess/SCADA 8.4.1 allows a remote, unauthenticated attacker to execute arbitrary code via a crafted IOCTL 70603 RP… | CRITICAL | 9.8 | Sep 10, 2019 |
| CVE-2019-6554 | Advantech WebAccess/SCADA, Versions 8.3.5 and prior. An improper access control vulnerability may allow an attacker to cause a denial-of-service condition. | HIGH | 7.5 | Apr 5, 2019 |
| CVE-2019-6550 | Advantech WebAccess/SCADA, Versions 8.3.5 and prior. Multiple stack-based buffer overflow vulnerabilities, caused by a lack of proper validation of the length… | CRITICAL | 9.8 | Apr 5, 2019 |
| CVE-2019-6552 | Advantech WebAccess/SCADA, Versions 8.3.5 and prior. Multiple command injection vulnerabilities, caused by a lack of proper validation of user-supplied data, m… | CRITICAL | 9.8 | Apr 5, 2019 |
Showing 1 to 16 of 16 CVEs