Known Vulnerabilities for Webaccess by Advantech
Listed below are 10 of the newest known vulnerabilities associated with "Webaccess" by "Advantech".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2023-4215 json | Advantech WebAccess version 9.1.3 contains an exposure of sensitive information to an unauthorized actor vulnerability that c... | 7.5 - HIGH | 2023-10-17 | 2023-10-20 |
| CVE-2023-2866 json | If an attacker can trick an authenticated user into loading a maliciously crafted .zip file onto Advantech WebAccess version... | 7.8 - HIGH | 2023-06-07 | 2023-06-15 |
| CVE-2021-38408 json | A stack-based buffer overflow vulnerability in Advantech WebAccess Versions 9.02 and prior caused by a lack of proper validat... | 9.8 - CRITICAL | 2021-09-09 | 2021-09-20 |
| CVE-2021-38389 json | Advantech WebAccess versions 9.02 and prior are vulnerable to a stack-based buffer overflow, which may allow an attacker to r... | 9.8 - CRITICAL | 2021-10-18 | 2021-10-20 |
| CVE-2021-34540 json | Advantech WebAccess 8.4.2 and 8.4.4 allows XSS via the username column of the bwRoot.asp page of WADashboard. | 6.1 - MEDIUM | 2021-06-11 | 2021-06-21 |
| CVE-2021-33023 json | Advantech WebAccess versions 9.02 and prior are vulnerable to a heap-based buffer overflow, which may allow an attacker to re... | 9.8 - CRITICAL | 2021-10-18 | 2021-10-20 |
| CVE-2020-16202 json | WebAccess Node (All versions prior to 9.0.1) has incorrect permissions set for resources used by specific services, which may... | 7.8 - HIGH | 2020-09-22 | 2020-09-30 |
| CVE-2020-12026 json | Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0. Multiple relative path traversal vulnerabilities exist that... | 8.8 - HIGH | 2020-05-08 | 2021-09-23 |
| CVE-2020-12022 json | Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0. An improper validation vulnerability exists that could allo... | 9.8 - CRITICAL | 2020-05-08 | 2020-05-11 |
| CVE-2020-12019 json | WebAccess Node Version 8.4.4 and prior is vulnerable to a stack-based buffer overflow, which may allow an attacker to remotel... | 9.8 - CRITICAL | 2020-06-15 | 2021-09-23 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Advantech | Webaccess | 9.0.2 | |||
| Application | Advantech | Webaccess | 9.0.1 | |||
| Application | Advantech | Webaccess | 9.0.0 | |||
| Application | Advantech | Webaccess | 8.4.4 | |||
| Application | Advantech | Webaccess | 8.4.3 | |||
| Application | Advantech | Webaccess | 8.4.2 | |||
| Application | Advantech | Webaccess | 8.4.1 | |||
| Application | Advantech | Webaccess | 8.4.0 | |||
| Application | Advantech | Webaccess | 8.4 | |||
| Application | Advantech | Webaccess | 8.3.5 | |||
| Application | Advantech | Webaccess | 8.3.4 | |||
| Application | Advantech | Webaccess | 8.3.2 | |||
| Application | Advantech | Webaccess | 8.3.1 | |||
| Application | Advantech | Webaccess | 8.3.0 | |||
| Application | Advantech | Webaccess | 8.2_20170817 | |||
| Application | Advantech | Webaccess | 8.2_20161121 | |||
| Application | Advantech | Webaccess | 8.2 | |||
| Application | Advantech | Webaccess | 8.1_20160519 | |||
| Application | Advantech | Webaccess | 8.1_20151230 | |||
| Application | Advantech | Webaccess | 8.1 |