QID 590540
Date Published: 2021-09-22
QID 590540: Advantech WebAccess/NMS Multiple Vulnerabilities (ICSA-20-098-01)
AFFECTED PRODUCTS
The following versions of WebAccess/NMS, a network management system, are affected:
WebAccess/NMS versions prior to 3.0.2
QID Detection Logic (Authenticated)
QID checks for the Vulnerable version using windows registry keys
Successful exploitation of these vulnerabilities may allow an attacker to gain remote code execution, upload files, delete files, cause a denial-of-service condition, and create an admin account for the application.
Solution
Customers are advised to refer to CERT MITIGATIONS section ICSA-20-098-01 for affected packages and patching details.
Vendor References
- ICSA-20-098-01 -
www.us-cert.gov/ics/advisories/ICSA-20-098-01
CVEs related to QID 590540
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| ICSA-20-098-01 |
|