Vulnerability index

Browse CVEs

360 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Webaccess CRITICAL 9.8
CVE-2017-16724

A Stack-based Buffer Overflow issue was discovered in Advantech WebAccess versions prior to 8.3. There are multiple instances of a vulnerability that…

Fix: 8.3+
Fix from $2,300 2018-01-05
Webaccess HIGH 7.5
CVE-2017-16728

An Untrusted Pointer Dereference issue was discovered in Advantech WebAccess versions prior to 8.3. There are multiple vulnerabilities that may allow…

Fix: 8.3+
Fix from $1,950 2018-01-05
Webaccess HIGH 7.5
CVE-2017-16753

An Improper Input Validation issue was discovered in Advantech WebAccess versions prior to 8.3. WebAccess allows some inputs that may cause the progr…

Fix: 8.3+
Fix from $1,950 2018-01-05
Webaccess HIGH 7.5
CVE-2017-12719

An Untrusted Pointer Dereference issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. A remote attacker is able to execute co…

Fix: 8.2_20170817+
Fix from $1,950 2017-11-06
Webaccess MEDIUM 6.3
CVE-2017-14016EPSS 16%

A Stack-based Buffer Overflow issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. The application lacks proper validation of…

Fix: 8.2_20170817+
Fix from $1,600 2017-11-06
Webop HIGH 7.8
CVE-2017-12705

A Heap-Based Buffer Overflow issue was discovered in Advantech WebOP. A maliciously crafted project file may be able to trigger a heap-based buffer o…

Mitigation only
Fix from $1,950 2017-10-25
Webaccess HIGH 7.8
CVE-2017-12717

An Uncontrolled Search Path Element issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. A maliciously crafted dll file place…

Fix: after 8.2
Fix from $1,950 2017-08-30
Webaccess CRITICAL 9.8
CVE-2017-12698

An Improper Authentication issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. Specially crafted requests allow a possible a…

Fix: after 8.2
Fix from $2,300 2017-08-30
Webaccess CRITICAL 9.8
CVE-2017-12706

A stack-based buffer overflow issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. Researchers have identified multiple vulne…

Fix: after 8.2
Fix from $2,300 2017-08-30
Webaccess CRITICAL 9.8
CVE-2017-12708

An Improper Restriction Of Operations Within The Bounds Of A Memory Buffer issue was discovered in Advantech WebAccess versions prior to V8.2_2017081…

Fix: after 8.2
Fix from $2,300 2017-08-30
Webaccess HIGH 8.8
CVE-2017-12702

An Externally Controlled Format String issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. String format specifiers based on…

Fix: after 8.2
Fix from $1,950 2017-08-30
Webaccess HIGH 8.8
CVE-2017-12704

A heap-based buffer overflow issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. Researchers have identified multiple vulner…

Fix: after 8.2
Fix from $1,950 2017-08-30
Webaccess HIGH 7.8
CVE-2017-12711

An Incorrect Privilege Assignment issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. A built-in user account has been grant…

Fix: after 8.2
Fix from $1,950 2017-08-30
Webaccess HIGH 7.8
CVE-2017-12713

An Incorrect Permission Assignment for Critical Resource issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. Multiple files …

Fix: after 8.2
Fix from $1,950 2017-08-30
Webaccess HIGH 7.5
CVE-2017-12710

A SQL Injection issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. By submitting a specially crafted parameter, it is possi…

Fix: after 8.2
Fix from $1,950 2017-08-30
Webaccess HIGH 7.1
CVE-2017-7929

An Absolute Path Traversal issue was discovered in Advantech WebAccess Version 8.1 and prior. The absolute path traversal vulnerability has been iden…

Fix: after 8.1
Fix from $1,950 2017-05-06
Webaccess CRITICAL 9.8
CVE-2017-5154

An issue was discovered in Advantech WebAccess Version 8.1. To be able to exploit the SQL injection vulnerability, an attacker must supply malformed …

Mitigation only
Fix from $2,300 2017-02-13
Webaccess CRITICAL 9.1
CVE-2017-5152

An issue was discovered in Advantech WebAccess Version 8.1. By accessing a specific uniform resource locator (URL) on the web server, a malicious use…

Mitigation only
Fix from $2,300 2017-02-13
Susiaccess HIGH 7.8
CVE-2016-9353

An issue was discovered in Advantech SUISAccess Server Version 3.0 and prior. The admin password is stored in the system and is encrypted with a stat…

Fix: after 3.0
Fix from $1,950 2017-02-13
Susiaccess HIGH 7.5
CVE-2016-9349EPSS 8%

An issue was discovered in Advantech SUISAccess Server Version 3.0 and prior. An attacker could traverse the file system and extract files that can r…

Fix: after 3.0
Fix from $1,950 2017-02-13
Susiaccess HIGH 7.0
CVE-2016-9351

An issue was discovered in Advantech SUISAccess Server Version 3.0 and prior. The directory traversal/file upload error allows an attacker to upload …

Fix: after 3.0
Fix from $1,950 2017-02-13
Webaccess MEDIUM 5.0
CVE-2016-4528

Buffer overflow in Advantech WebAccess before 8.1_20160519 allows local users to cause a denial of service via a crafted DLL file.

Fix: after 8.1
Fix from $1,600 2016-06-25
Webaccess MEDIUM 6.6
CVE-2016-4525

Unspecified ActiveX controls in Advantech WebAccess before 8.1_20160519 allow remote authenticated users to obtain sensitive information or modify da…

Fix: after 8.1
Fix from $1,600 2016-06-25
Vesp211 Eu Firmware CRITICAL 9.8
CVE-2016-2275

The web interface on Advantech/B+B SmartWorx VESP211-EU devices with firmware 1.7.2 and VESP211-232 devices with firmware 1.5.1 and 1.7.2 relies on t…

Mitigation only
Fix from $2,300 2016-02-21
Webaccess CRITICAL 9.8
CVE-2016-0859EPSS 8%

Integer overflow in the Kernel service in Advantech WebAccess before 8.1 allows remote attackers to execute arbitrary code or cause a denial of servi…

Fix: after 8.0
Fix from $2,300 2016-01-15
Webaccess HIGH 7.5
CVE-2016-0860EPSS 5%

Buffer overflow in the BwpAlarm subsystem in Advantech WebAccess before 8.1 allows remote attackers to cause a denial of service via a crafted RPC re…

Fix: after 8.0
Fix from $1,950 2016-01-15
Webaccess HIGH 8.1
CVE-2016-0858EPSS 5%

Race condition in Advantech WebAccess before 8.1 allows remote attackers to execute arbitrary code or cause a denial of service (buffer overflow) via…

Fix: after 8.0
Fix from $1,950 2016-01-15
Webaccess CRITICAL 9.8
CVE-2016-0857EPSS 28%

Multiple heap-based buffer overflows in Advantech WebAccess before 8.1 allow remote attackers to execute arbitrary code via unspecified vectors.

Fix: after 8.0
Fix from $2,300 2016-01-15
Webaccess CRITICAL 9.8
CVE-2016-0856EPSS 17%

Multiple stack-based buffer overflows in Advantech WebAccess before 8.1 allow remote attackers to execute arbitrary code via unspecified vectors.

Fix: after 8.0
Fix from $2,300 2016-01-15
Webaccess HIGH 7.5
CVE-2016-0855

Directory traversal vulnerability in Advantech WebAccess before 8.1 allows remote attackers to list arbitrary virtual-directory files via unspecified…

Fix: after 8.0
Fix from $1,950 2016-01-15