Skip to content
Noroxi

Advantech records

378 published records for vendor advantech.

All records

378 records
  • CVE-2016-0854
    62This week

    Unrestricted file upload vulnerability in the uploadImageCommon function in the UploadAjaxAction script in the WebAccess Dashboard Viewer in

    CriticalCVSS 9.8WeaponizedEPSS 77%

    advantech · webaccessJan 14, 2016

  • CVE-2021-21805
    60This week

    An OS Command Injection vulnerability exists in the ping.php script functionality of Advantech R-SeeNet v 2.4.12 (20.10.2020).

    CriticalCVSS 9.8Proof of conceptEPSS 70%

    advantech · r-seenetAug 5, 2021

  • The affected product is vulnerable to two instances of command injection, which may allow an attacker to remotely execute arbitrary code.

    CriticalCVSS 9.8WeaponizedEPSS 59%

    advantech · iviewJul 22, 2022

  • A Path Traversal issue was discovered in WebAccess versions 8.3.2 and earlier.

    CriticalCVSS 9.8Proof of conceptEPSS 50%

    advantech · webaccessJan 5, 2018

  • Execution of arbitrary SQL commands

    CriticalCVSS 9.8Proof of conceptEPSS 40%

    advantech · iot edge linux dockerJan 11, 2026

  • Access to the Advantech iView versions prior to v5.7.03.6112 configuration are missing authentication, which may allow an unauthorized attac

    CriticalCVSS 9.8WeaponizedEPSS 37%

    advantech · iviewFeb 11, 2021

  • Advantech WebAccess Stack-Based Buffer Overflow

    HighCVSS 7.5WeaponizedEPSS 61%

    advantech · advantech webaccessJul 19, 2014

  • Multiple buffer overflows in the ISSymbol ActiveX control in ISSymbol.ocx 61.6.0.0 and 301.1009.2904.0 in the ISSymbol virtual machine, as d

    CriticalCVSS 9.3WeaponizedEPSS 32%

    advantech · advantech studioMay 4, 2011

  • Multiple heap-based buffer overflows in Advantech WebAccess before 8.1 allow remote attackers to execute arbitrary code via unspecified vect

    CriticalCVSS 9.8No exploitEPSS 28%

    advantech · webaccessJan 14, 2016

  • cgi/utility.cgi in Advantech EKI-6340 2.05 Wi-Fi Mesh Access Point allows remote authenticated users to execute arbitrary commands via shell

    CriticalCVSS 9.0Proof of conceptEPSS 31%

    advantech · eki-6340 firmwareNov 20, 2014

  • Multiple stack-based buffer overflows in Advantech WebAccess before 8.1 allow remote attackers to execute arbitrary code via unspecified vec

    CriticalCVSS 9.8No exploitEPSS 17%

    advantech · webaccessJan 14, 2016

  • Advantech R-SeeNet Unauthenticated Read/Write

    CriticalCVSS 9.8No exploitEPSS 17%

    advantech · r-seenetOct 18, 2023

  • The affected product is vulnerable to directory traversal, which may allow an attacker to access unauthorized files and execute arbitrary co

    CriticalCVSS 9.8No exploitEPSS 16%

    advantech · iviewJul 22, 2022

  • This vulnerability is present in device_graph_page.php script, which is a part of the Advantech R-SeeNet web applications.

    MediumCVSS 6.1Proof of conceptEPSS 63%

    advantech · r-seenetJul 16, 2021

  • The VBWinExec function in Node\AspVBObj.dll in Advantech WebAccess 8.3.0 allows remote attackers to execute arbitrary OS commands via a sing

    CriticalCVSS 9.8Proof of conceptEPSS 13%

    advantech · webaccessFeb 13, 2018

  • Advantech iView versions prior to v5.7.03.6112 are vulnerable to a SQL injection, which may allow an attacker to escalate privileges to 'Adm

    CriticalCVSS 9.8No exploitEPSS 13%

    advantech · iviewFeb 11, 2021

  • Multiple stack-based buffer overflows in unspecified DLL files in Advantech WebAccess before 8.0.1 allow remote attackers to execute arbitra

    CriticalCVSS 10.0Proof of conceptEPSS 9%

    advantech · webaccessSep 11, 2015

  • Stack-based buffer overflow in NTWebServer.exe in the test web service in InduSoft NTWebServer, as distributed in Advantech Studio 6.1 and I

    CriticalCVSS 10.0No exploitEPSS 9%

    advantech · advantech studioJan 18, 2011

  • A stack-based buffer overflow vulnerability in Advantech WebAccess Versions 9.02 and prior caused by a lack of proper validation of the leng

    CriticalCVSS 9.8No exploitEPSS 12%

    advantech · webaccessSep 9, 2021

  • In WebAccess/SCADA Versions 8.3.5 and prior, multiple untrusted pointer dereference vulnerabilities may allow a remote attacker to execute a

    CriticalCVSS 9.8No exploitEPSS 11%

    advantech · webaccessJun 28, 2019

  • Advantech WebAccess versions 9.02 and prior are vulnerable to a stack-based buffer overflow, which may allow an attacker to remotely execute

    CriticalCVSS 9.8No exploitEPSS 10%

    advantech · webaccessOct 18, 2021

  • Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0.

    CriticalCVSS 9.8No exploitEPSS 9%

    advantech · webaccessMay 8, 2020

  • In WebAccess/SCADA, Versions 8.3.5 and prior, multiple stack-based buffer overflow vulnerabilities are caused by a lack of proper validation

    CriticalCVSS 9.8No exploitEPSS 9%

    advantech · webaccessJun 28, 2019

  • In WebAccess/SCADA Versions 8.3.5 and prior, multiple heap-based buffer overflow vulnerabilities are caused by a lack of proper validation o

    CriticalCVSS 9.8No exploitEPSS 9%

    advantech · webaccessJun 28, 2019

  • Format string vulnerability in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to execute arbitrary code via format string s

    CriticalCVSS 10.0Proof of conceptEPSS 7%

    advantech · advantech webaccessFeb 21, 2012