Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 7.5
CVE-2021-32932
The affected product is vulnerable to a SQL injection, which may allow an unauthorized attacker to disclose information on the iView (versions prior …
Iview
5.7.03.6182+
CRITICAL 9.8
CVE-2021-32930EPSS 8%
The affected product’s configuration is vulnerable due to missing authentication, which may allow an attacker to change configurations and execute ar…
Iview
5.7.03.6182+
MEDIUM 6.1
CVE-2021-34540
Advantech WebAccess 8.4.2 and 8.4.4 allows XSS via the username column of the bwRoot.asp page of WADashboard.
Webaccess
No fix yet
CRITICAL 9.1
CVE-2021-27437
The affected product allows attackers to obtain sensitive information from the WISE-PaaS dashboard. The system contains a hard-coded administrator us…
Wise Paas\/rmm
9.0.1+
HIGH 8.8
CVE-2021-22669
Incorrect permissions are set to default on the ‘Project Management’ page of WebAccess/SCADA portal of WebAccess/SCADA Versions 9.0.1 and prior, whic…
Webaccess\/scada
after 9.0.1
MEDIUM 6.1
CVE-2021-27436
WebAccess/SCADA Versions 9.0 and prior is vulnerable to cross-site scripting, which may allow an attacker to send malicious JavaScript code to an uns…
Webaccess\/scada
after 9.0
CRITICAL 9.8
CVE-2019-18235
Advantech Spectre RT ERT351 Versions 5.1.3 and prior has insufficient login authentication parameters required for the web application may allow an a…
Spectre Rt Ert351 Firmware
after 5.1.3
HIGH 7.5
CVE-2019-18231
Advantech Spectre RT ERT351 Versions 5.1.3 and prior logins and passwords are transmitted in clear text form, which may allow an attacker to intercep…
Spectre Rt Ert351 Firmware
after 5.1.3
MEDIUM 6.1
CVE-2019-18233
In Advantech Spectre RT Industrial Routers ERT351 5.1.3 and prior, the affected product does not neutralize special characters in the error response,…
Spectre Rt Ert351 Firmware
after 5.1.3
HIGH 7.8
CVE-2020-13554
An exploitable local privilege elevation vulnerability exists in the file system permissions of Advantech WebAccess/SCADA 9.0.1 installation. In webv…
Webaccess\/scada
No fix yet
CRITICAL 9.8
CVE-2021-22667
BB-ESWGP506-2SFP-T versions 1.01.09 and prior is vulnerable due to the use of hard-coded credentials, which may allow an attacker to gain unauthorize…
Bb Eswgp506 2sfp T Firmware
after 1.01.09
HIGH 8.8
CVE-2020-25161
The WADashboard component of WebAccess/SCADA Versions 9.0 and prior may allow an attacker to control or influence a path used in an operation on the …
Webaccess\/scada
9.0.1+
HIGH 8.8
CVE-2020-13551
An exploitable local privilege elevation vulnerability exists in the file system permissions of Advantech WebAccess/SCADA 9.0.1 installation. In priv…
Webaccess\/scada
No fix yet
HIGH 8.8
CVE-2020-13552
An exploitable local privilege elevation vulnerability exists in the file system permissions of Advantech WebAccess/SCADA 9.0.1 installation. In priv…
Webaccess\/scada
No fix yet
HIGH 8.8
CVE-2020-13553
An exploitable local privilege elevation vulnerability exists in the file system permissions of Advantech WebAccess/SCADA 9.0.1 installation. In webv…
Webaccess\/scada
No fix yet
HIGH 8.8
CVE-2020-13555
An exploitable local privilege elevation vulnerability exists in the file system permissions of Advantech WebAccess/SCADA 9.0.1 installation. In COM …
Webaccess\/scada
No fix yet
HIGH 7.7
CVE-2020-13550
A local file inclusion vulnerability exists in the installation functionality of Advantech WebAccess/SCADA 9.0.1. A specially crafted application can…
Webaccess\/scada
No fix yet
CRITICAL 9.8
CVE-2021-22652EPSS 37%
Access to the Advantech iView versions prior to v5.7.03.6112 configuration are missing authentication, which may allow an unauthorized attacker to ch…
Iview
5.7.03.6112+
CRITICAL 9.8
CVE-2021-22658EPSS 13%
Advantech iView versions prior to v5.7.03.6112 are vulnerable to a SQL injection, which may allow an attacker to escalate privileges to 'Administrato…
Iview
5.7.03.6112+
HIGH 7.5
CVE-2021-22654EPSS 12%
Advantech iView versions prior to v5.7.03.6112 are vulnerable to a SQL injection, which may allow an unauthorized attacker to disclose information.
Iview
5.7.03.6112+
HIGH 7.5
CVE-2021-22656
Advantech iView versions prior to v5.7.03.6112 are vulnerable to directory traversal, which may allow an attacker to read sensitive files.
Iview
5.7.03.6112+
HIGH 7.5
CVE-2020-25157
The R-SeeNet webpage (1.5.1 through 2.4.10) suffers from SQL injection, which allows a remote attacker to invoke queries on the database and retrieve…
R Seenet
after 2.4.10
HIGH 7.8
CVE-2020-16202
WebAccess Node (All versions prior to 9.0.1) has incorrect permissions set for resources used by specific services, which may allow code execution wi…
Webaccess
9.0.1+
CRITICAL 9.8
CVE-2020-16245EPSS 8%
Advantech iView, Versions 5.7 and prior. The affected product is vulnerable to path traversal vulnerabilities that could allow an attacker to create/…
Iview
after 5.7
HIGH 7.8
CVE-2020-16207
Advantech WebAccess HMI Designer, Versions 2.1.9.31 and prior. Multiple heap-based buffer overflow vulnerabilities may be exploited by opening specia…
Webaccess\/hmi Designer
after 2.1.9.31
HIGH 7.8
CVE-2020-16213
Advantech WebAccess HMI Designer, Versions 2.1.9.31 and prior. Processing specially crafted project files lacking proper validation of user supplied …
Webaccess\/hmi Designer
after 2.1.9.31
HIGH 7.8
CVE-2020-16215
Advantech WebAccess HMI Designer, Versions 2.1.9.31 and prior. Processing specially crafted project files lacking proper validation of user supplied …
Webaccess\/hmi Designer
after 2.1.9.31
HIGH 7.8
CVE-2020-16217
Advantech WebAccess HMI Designer, Versions 2.1.9.31 and prior. A double free vulnerability caused by processing specially crafted project files may a…
Webaccess\/hmi Designer
after 2.1.9.31
HIGH 7.8
CVE-2020-16229
Advantech WebAccess HMI Designer, Versions 2.1.9.31 and prior. Processing specially crafted project files lacking proper validation of user supplied …
Webaccess\/hmi Designer
after 2.1.9.31
MEDIUM 5.5
CVE-2020-16211
Advantech WebAccess HMI Designer, Versions 2.1.9.31 and prior. An out-of-bounds read vulnerability may be exploited by processing specially crafted p…
Webaccess\/hmi Designer
after 2.1.9.31