Vulnerability index

Browse CVEs

360 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Eki 1521 Firmware HIGH 8.8
CVE-2023-2573

Advantech EKI-1524, EKI-1522, EKI-1521 devices through 1.21 are affected by an command injection vulnerability in the NTP server input field, which c…

Fix: after 1.21
Fix from $1,950 2023-05-08
Eki 1521 Firmware HIGH 8.8
CVE-2023-2574

Advantech EKI-1524, EKI-1522, EKI-1521 devices through 1.21 are affected by an command injection vulnerability in the device name input field, which …

Fix: after 1.21
Fix from $1,950 2023-05-08
Eki 1521 Firmware HIGH 8.8
CVE-2023-2575EPSS 15%

Advantech EKI-1524, EKI-1522, EKI-1521 devices through 1.21 are affected by a Stack-based Buffer Overflow vulnerability, which can be triggered by au…

Fix: after 1.21
Fix from $1,950 2023-05-08
R Seenet CRITICAL 9.8
CVE-2022-3385

Advantech R-SeeNet Versions 2.4.17 and prior are vulnerable to a stack-based buffer overflow. An unauthorized attacker can remotely overflow the stac…

Fix: after 2.4.17
Fix from $2,300 2022-10-27
R Seenet CRITICAL 9.8
CVE-2022-3386

Advantech R-SeeNet Versions 2.4.17 and prior are vulnerable to a stack-based buffer overflow. An unauthorized attacker can use an outsized filename t…

Fix: after 2.4.17
Fix from $2,300 2022-10-27
R Seenet MEDIUM 5.3
CVE-2022-3387EPSS 14%

Advantech R-SeeNet Versions 2.4.19 and prior are vulnerable to path traversal attacks. An unauthorized attacker could remotely exploit vulnerable PHP…

Fix: after 2.4.19
Fix from $1,600 2022-10-27
Iview HIGH 7.5
CVE-2022-3323EPSS 31%

An SQL injection vulnerability in Advantech iView 5.7.04.6469. The specific flaw exists within the ConfigurationServlet endpoint, which listens on TC…

No fix yet
Fix from $1,950 2022-09-27
Iview CRITICAL 9.8
CVE-2022-2139EPSS 15%

The affected product is vulnerable to directory traversal, which may allow an attacker to access unauthorized files and execute arbitrary code.

Fix: 5.7.04.6469+
Fix from $2,300 2022-07-22
Iview CRITICAL 9.8
CVE-2022-2143EPSS 59%

The affected product is vulnerable to two instances of command injection, which may allow an attacker to remotely execute arbitrary code.

Fix: 5.7.04.6469+
Fix from $2,300 2022-07-22
Iview HIGH 7.5
CVE-2022-2135EPSS 10%

The affected product is vulnerable to multiple SQL injections, which may allow an unauthorized attacker to disclose information.

Fix: 5.7.04.6469+
Fix from $1,950 2022-07-22
Iview HIGH 7.5
CVE-2022-2138EPSS 11%

The affected product is vulnerable due to missing authentication, which may allow an attacker to read or modify sensitive data and execute arbitrary …

Fix: 5.7.04.6469+
Fix from $1,950 2022-07-22
Iview MEDIUM 6.5
CVE-2022-2136EPSS 9%

The affected product is vulnerable to multiple SQL injections that require low privileges for exploitation and may allow an unauthorized attacker to …

Fix: 5.7.04.6469+
Fix from $1,600 2022-07-22
Iview MEDIUM 5.9
CVE-2022-2142

The affected product is vulnerable to a SQL injection with high attack complexity, which may allow an unauthorized attacker to disclose information.

Fix: 5.7.04.6469+
Fix from $1,600 2022-07-22
Adam 3600 Firmware CRITICAL 9.8
CVE-2022-22987

The affected product has a hardcoded private key available inside the project folder, which may allow an attacker to achieve Web Server login and per…

Fix: after 2.6.2
Fix from $2,300 2022-02-04
Sq Manager HIGH 8.8
CVE-2021-40388

A privilege escalation vulnerability exists in Advantech SQ Manager Server 1.0.6. A specially-crafted file can be replaced in the system to escalate …

No fix yet
Fix from $1,950 2022-01-28
Deviceon\/iedge HIGH 8.8
CVE-2021-40389

A privilege escalation vulnerability exists in the installation of Advantech DeviceOn/iEdge Server 1.0.2. A specially-crafted file can be replaced in…

No fix yet
Fix from $1,950 2022-01-28
Deviceon\/iservice HIGH 8.8
CVE-2021-40396

A privilege escalation vulnerability exists in the installation of Advantech DeviceOn/iService 1.1.7. A specially-crafted file can be replaced in the…

No fix yet
Fix from $1,950 2022-01-28
Wise Paas\/ota HIGH 7.8
CVE-2021-40397

A privilege escalation vulnerability exists in the installation of Advantech WISE-PaaS/OTA Server 3.0.9. A specially-crafted file can be replaced in …

No fix yet
Fix from $1,950 2022-01-28
R Seenet MEDIUM 6.5
CVE-2021-21937

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this vulnerability at ‘host_a…

No fix yet
Fix from $1,600 2021-12-22
R Seenet HIGH 8.8
CVE-2021-21915

An exploitable SQL injection vulnerability exist in the ‘group_list’ page of the Advantech R-SeeNet 2.4.15 (30.07.2021). A specially-crafted HTTP req…

No fix yet
Fix from $1,950 2021-12-22
R Seenet HIGH 8.8
CVE-2021-21916

An exploitable SQL injection vulnerability exist in the ‘group_list’ page of the Advantech R-SeeNet 2.4.15 (30.07.2021). A specially-crafted HTTP req…

No fix yet
Fix from $1,950 2021-12-22
R Seenet HIGH 8.8
CVE-2021-21917

An exploitable SQL injection vulnerability exist in the ‘group_list’ page of the Advantech R-SeeNet 2.4.15 (30.07.2021). A specially-crafted HTTP req…

No fix yet
Fix from $1,950 2021-12-22
R Seenet HIGH 8.8
CVE-2021-21936

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this vulnerability at ‘health…

No fix yet
Fix from $1,950 2021-12-22
R Seenet HIGH 7.8
CVE-2021-21911

A privilege escalation vulnerability exists in the Windows version of installation for Advantech R-SeeNet Advantech R-SeeNet 2.4.15 (30.07.2021). A s…

No fix yet
Fix from $1,950 2021-12-22
R Seenet HIGH 7.8
CVE-2021-21912

A privilege escalation vulnerability exists in the Windows version of installation for Advantech R-SeeNet Advantech R-SeeNet 2.4.15 (30.07.2021). A s…

No fix yet
Fix from $1,950 2021-12-22
R Seenet MEDIUM 6.5
CVE-2021-21922

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this vulnerability at ‘userna…

No fix yet
Fix from $1,600 2021-12-22
R Seenet MEDIUM 6.5
CVE-2021-21924EPSS 20%

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger these vulnerabilities. This c…

No fix yet
Fix from $1,600 2021-12-22
R Seenet MEDIUM 6.5
CVE-2021-21925

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger these vulnerabilities. This c…

No fix yet
Fix from $1,600 2021-12-22
R Seenet MEDIUM 6.5
CVE-2021-21926

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger these vulnerabilities. This c…

No fix yet
Fix from $1,600 2021-12-22
R Seenet MEDIUM 6.5
CVE-2021-21927

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger these vulnerabilities. This c…

No fix yet
Fix from $1,600 2021-12-22