Advantech / Advantech Webaccess
44 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2018-15707 | Advantech WebAccess 8.3.1 and 8.3.2 are vulnerable to cross-site scripting in the Bwmainleft.asp page. An attacker could leverage this vulnerability to disclos… | MEDIUM | 5.4 | Oct 31, 2018 |
| CVE-2018-15706 | WADashboard API in Advantech WebAccess 8.3.1 and 8.3.2 allows remote authenticated attackers to read any file on the filesystem due to a directory traversal vu… | MEDIUM | 6.5 | Oct 31, 2018 |
| CVE-2018-15705 | WADashboard API in Advantech WebAccess 8.3.1 and 8.3.2 allows remote authenticated attackers to write or overwrite any file on the filesystem due to a director… | MEDIUM | 6.5 | Oct 31, 2018 |
| CVE-2018-14828 | Advantech WebAccess 8.3.1 and earlier has an improper privilege management vulnerability, which may allow an attacker to access those files and perform actions… | HIGH | 7.8 | Oct 23, 2018 |
| CVE-2018-14820 | Advantech WebAccess 8.3.1 and earlier has a .dll component that is susceptible to external control of file name or path vulnerability, which may allow an arbit… | HIGH | 7.5 | Oct 23, 2018 |
| CVE-2018-14816 | Advantech WebAccess 8.3.1 and earlier has several stack-based buffer overflow vulnerabilities that have been identified, which may allow an attacker to execute… | CRITICAL | 9.8 | Oct 23, 2018 |
| CVE-2018-14806 | Advantech WebAccess 8.3.1 and earlier has a path traversal vulnerability which may allow an attacker to execute arbitrary code. | CRITICAL | 9.8 | Oct 23, 2018 |
| CVE-2018-15704 | Advantech WebAccess 8.3.2 and below is vulnerable to a stack buffer overflow vulnerability. A remote authenticated attacker could potentially exploit this vuln… | HIGH | 8.8 | Oct 22, 2018 |
| CVE-2018-15703 | Advantech WebAccess 8.3.2 and below is vulnerable to multiple reflected cross site scripting vulnerabilities. A remote unauthenticated attacker could potential… | MEDIUM | 6.1 | Oct 22, 2018 |
| CVE-2014-0992 | Stack-based buffer overflow in Advantech WebAccess (formerly BroadWin WebAccess) 7.2 allows remote attackers to execute arbitrary code via the password paramet… | MEDIUM | 6.8 | Sep 20, 2014 |
| CVE-2014-0991 | Stack-based buffer overflow in Advantech WebAccess (formerly BroadWin WebAccess) 7.2 allows remote attackers to execute arbitrary code via the projectname para… | MEDIUM | 6.8 | Sep 20, 2014 |
| CVE-2014-0990 | Stack-based buffer overflow in Advantech WebAccess (formerly BroadWin WebAccess) 7.2 allows remote attackers to execute arbitrary code via the UserName paramet… | MEDIUM | 6.8 | Sep 20, 2014 |
| CVE-2014-0989 | Stack-based buffer overflow in Advantech WebAccess (formerly BroadWin WebAccess) 7.2 allows remote attackers to execute arbitrary code via the AccessCode2 para… | MEDIUM | 6.8 | Sep 20, 2014 |
| CVE-2014-0988 | Stack-based buffer overflow in Advantech WebAccess (formerly BroadWin WebAccess) 7.2 allows remote attackers to execute arbitrary code via the AccessCode param… | MEDIUM | 6.8 | Sep 20, 2014 |
| CVE-2014-0987 | Stack-based buffer overflow in Advantech WebAccess (formerly BroadWin WebAccess) 7.2 allows remote attackers to execute arbitrary code via the NodeName2 parame… | MEDIUM | 6.8 | Sep 20, 2014 |
| CVE-2014-0986 | Stack-based buffer overflow in Advantech WebAccess (formerly BroadWin WebAccess) 7.2 allows remote attackers to execute arbitrary code via the GotoCmd paramete… | MEDIUM | 6.8 | Sep 20, 2014 |
| CVE-2014-0985 | Stack-based buffer overflow in Advantech WebAccess (formerly BroadWin WebAccess) 7.2 allows remote attackers to execute arbitrary code via the NodeName paramet… | MEDIUM | 6.8 | Sep 20, 2014 |
| CVE-2014-2368 | Advantech WebAccess Unsafe ActiveX Control Marked Safe For Scripting | HIGH | 7.5 | Jul 19, 2014 |
| CVE-2014-2367 | Advantech WebAccess Authentication Bypass Issues | HIGH | 7.5 | Jul 19, 2014 |
| CVE-2014-2366 | Advantech WebAccess Cleartext Storage of Sensitive Information in Memory | HIGH | 9.0 | Jul 19, 2014 |
| CVE-2014-2365 | Advantech WebAccess Improper Access Control | MEDIUM | 6.5 | Jul 19, 2014 |
| CVE-2014-2364 | Advantech WebAccess Stack-Based Buffer Overflow | HIGH | 7.5 | Jul 19, 2014 |
| CVE-2014-0773 | Advantech WebAccess Command Injection | HIGH | 7.5 | Apr 12, 2014 |
| CVE-2014-0772 | Advantech WebAccess File and Directory Information Exposure | MEDIUM | 5.0 | Apr 12, 2014 |
| CVE-2014-0771 | Advantech WebAccess File and Directory Information Exposure | HIGH | 7.5 | Apr 12, 2014 |
Showing 1 to 25 of 44 CVEs