Vulnerability index

Browse CVEs

89 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Webaccess\/scada HIGH 7.5
CVE-2025-67653

Advantech WebAccess/SCADA is vulnerable to directory traversal, which may allow an attacker to determine the existence of arbitrary files.

Mitigation only
Fix from $1,950 2025-12-18
Webaccess\/scada HIGH 8.8
CVE-2025-46268

Advantech WebAccess/SCADA  is vulnerable to SQL injection, which may allow an attacker to execute arbitrary SQL commands.

Mitigation only
Fix from $1,950 2025-12-18
Webaccess\/scada CRITICAL 9.8
CVE-2025-14849

Advantech WebAccess/SCADA  is vulnerable to unrestricted file upload, which may allow an attacker to remotely execute arbitrary code.

Mitigation only
Fix from $2,300 2025-12-18
Webaccess\/scada CRITICAL 9.1
CVE-2025-14850

Advantech WebAccess/SCADA is vulnerable to directory traversal, which may allow an attacker to delete arbitrary files.

Mitigation only
Fix from $2,300 2025-12-18
Webaccess\/scada MEDIUM 5.3
CVE-2025-14848

Advantech WebAccess/SCADA is vulnerable to absolute directory traversal, which may allow an attacker to determine the existence of arbitrary files.

Mitigation only
Fix from $1,600 2025-12-18
Tp 3250 Firmware MEDIUM 6.8
CVE-2025-63701

A heap corruption vulnerability exists in the Advantech TP-3250 printer driver's DrvUI_x64_ADVANTECH.dll (v0.3.9200.20789) when DocumentPropertiesW()…

No fix yet
Fix from $1,600 2025-11-14
Wise 4060lan Firmware CRITICAL 9.6
CVE-2025-48469

Successful exploitation of the vulnerability could allow an unauthenticated attacker to upload firmware through a public update page, potentially lea…

No fix yet
Fix from $2,300 2025-06-24
Wise 4060lan Firmware HIGH 8.1
CVE-2025-48466

Successful exploitation of the vulnerability could allow an unauthenticated, remote attacker to send Modbus TCP packets to manipulate Digital Outputs…

No fix yet
Fix from $1,950 2025-06-24
Wise 4010lan Firmware MEDIUM 6.5
CVE-2025-48467

Successful exploitation of the vulnerability could allow an attacker to cause repeated reboots, potentially leading to remote denial-of-service and s…

No fix yet
Fix from $1,600 2025-06-24
Wise 4010lan Firmware MEDIUM 6.4
CVE-2025-48468

Successful exploitation of the vulnerability could allow an attacker that has physical access to interface with JTAG to inject or modify firmware.

Mitigation only
Fix from $1,600 2025-06-24
Wise 4060lan Firmware MEDIUM 5.0
CVE-2025-48461

Successful exploitation of the vulnerability could allow an unauthenticated attacker to conduct brute force guessing and account takeover as the sess…

Mitigation only
Fix from $1,600 2025-06-24
Adam 5550 Firmware MEDIUM 6.1
CVE-2024-38308

Advantech ADAM 5550's web application includes a "logs" page where all the HTTP requests received are displayed to the user. The device doesn't cor…

Mitigation only
Fix from $1,600 2024-09-27
Adam 5550 Firmware MEDIUM 5.7
CVE-2024-37187

Advantech ADAM-5550 share user credentials with a low level of encryption, consisting of base 64 encoding.

Mitigation only
Fix from $1,600 2024-09-27
R Seenet CRITICAL 9.8
CVE-2023-5642EPSS 17%

Advantech R-SeeNet v2.4.23 allows an unauthenticated remote attacker to read from and write to the snmpmon.ini file, which contains sensitive informa…

No fix yet
Fix from $2,300 2023-10-18
Webaccess HIGH 7.5
CVE-2023-4215

Advantech WebAccess version 9.1.3 contains an exposure of sensitive information to an unauthorized actor vulnerability that could leak user credentia…

No fix yet
Fix from $1,950 2023-10-17
Webaccess HIGH 7.8
CVE-2023-2866

If an attacker can trick an authenticated user into loading a maliciously crafted .zip file onto Advantech WebAccess version 8.4.5, a web shell could…

Mitigation only
Fix from $1,950 2023-06-07
Iview HIGH 7.5
CVE-2022-3323EPSS 31%

An SQL injection vulnerability in Advantech iView 5.7.04.6469. The specific flaw exists within the ConfigurationServlet endpoint, which listens on TC…

No fix yet
Fix from $1,950 2022-09-27
Sq Manager HIGH 8.8
CVE-2021-40388

A privilege escalation vulnerability exists in Advantech SQ Manager Server 1.0.6. A specially-crafted file can be replaced in the system to escalate …

No fix yet
Fix from $1,950 2022-01-28
Deviceon\/iedge HIGH 8.8
CVE-2021-40389

A privilege escalation vulnerability exists in the installation of Advantech DeviceOn/iEdge Server 1.0.2. A specially-crafted file can be replaced in…

No fix yet
Fix from $1,950 2022-01-28
Deviceon\/iservice HIGH 8.8
CVE-2021-40396

A privilege escalation vulnerability exists in the installation of Advantech DeviceOn/iService 1.1.7. A specially-crafted file can be replaced in the…

No fix yet
Fix from $1,950 2022-01-28
Wise Paas\/ota HIGH 7.8
CVE-2021-40397

A privilege escalation vulnerability exists in the installation of Advantech WISE-PaaS/OTA Server 3.0.9. A specially-crafted file can be replaced in …

No fix yet
Fix from $1,950 2022-01-28
R Seenet MEDIUM 6.5
CVE-2021-21937

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this vulnerability at ‘host_a…

No fix yet
Fix from $1,600 2021-12-22
R Seenet HIGH 8.8
CVE-2021-21915

An exploitable SQL injection vulnerability exist in the ‘group_list’ page of the Advantech R-SeeNet 2.4.15 (30.07.2021). A specially-crafted HTTP req…

No fix yet
Fix from $1,950 2021-12-22
R Seenet HIGH 8.8
CVE-2021-21916

An exploitable SQL injection vulnerability exist in the ‘group_list’ page of the Advantech R-SeeNet 2.4.15 (30.07.2021). A specially-crafted HTTP req…

No fix yet
Fix from $1,950 2021-12-22
R Seenet HIGH 8.8
CVE-2021-21917

An exploitable SQL injection vulnerability exist in the ‘group_list’ page of the Advantech R-SeeNet 2.4.15 (30.07.2021). A specially-crafted HTTP req…

No fix yet
Fix from $1,950 2021-12-22
R Seenet HIGH 8.8
CVE-2021-21936

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this vulnerability at ‘health…

No fix yet
Fix from $1,950 2021-12-22
R Seenet HIGH 7.8
CVE-2021-21911

A privilege escalation vulnerability exists in the Windows version of installation for Advantech R-SeeNet Advantech R-SeeNet 2.4.15 (30.07.2021). A s…

No fix yet
Fix from $1,950 2021-12-22
R Seenet HIGH 7.8
CVE-2021-21912

A privilege escalation vulnerability exists in the Windows version of installation for Advantech R-SeeNet Advantech R-SeeNet 2.4.15 (30.07.2021). A s…

No fix yet
Fix from $1,950 2021-12-22
R Seenet MEDIUM 6.5
CVE-2021-21922

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this vulnerability at ‘userna…

No fix yet
Fix from $1,600 2021-12-22
R Seenet MEDIUM 6.5
CVE-2021-21924EPSS 20%

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger these vulnerabilities. This c…

No fix yet
Fix from $1,600 2021-12-22