Total
44 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2012-1234 | 1 Advantech | 1 Advantech Webaccess | 2024-02-04 | 6.5 MEDIUM | N/A |
SQL injection vulnerability in Advantech/BroadWin WebAccess 7.0 allows remote authenticated users to execute arbitrary SQL commands via a malformed URL. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-0234. | |||||
CVE-2012-0242 | 1 Advantech | 1 Advantech Webaccess | 2024-02-04 | 10.0 HIGH | N/A |
Format string vulnerability in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to execute arbitrary code via format string specifiers in a message string. | |||||
CVE-2011-4521 | 1 Advantech | 1 Advantech Webaccess | 2024-02-04 | 7.5 HIGH | N/A |
SQL injection vulnerability in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to execute arbitrary SQL commands via crafted string input. | |||||
CVE-2011-4522 | 1 Advantech | 1 Advantech Webaccess | 2024-02-04 | 4.3 MEDIUM | N/A |
Cross-site scripting (XSS) vulnerability in bwerrdn.asp in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters. |