Vulnerabilities (CVE)

Filtered by vendor Advantech Subscribe
Filtered by product Advantech Webaccess
Total 44 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2012-1234 1 Advantech 1 Advantech Webaccess 2024-02-04 6.5 MEDIUM N/A
SQL injection vulnerability in Advantech/BroadWin WebAccess 7.0 allows remote authenticated users to execute arbitrary SQL commands via a malformed URL. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-0234.
CVE-2012-0242 1 Advantech 1 Advantech Webaccess 2024-02-04 10.0 HIGH N/A
Format string vulnerability in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to execute arbitrary code via format string specifiers in a message string.
CVE-2011-4521 1 Advantech 1 Advantech Webaccess 2024-02-04 7.5 HIGH N/A
SQL injection vulnerability in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to execute arbitrary SQL commands via crafted string input.
CVE-2011-4522 1 Advantech 1 Advantech Webaccess 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in bwerrdn.asp in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters.