advantech
385 tracked vulnerabilities.
CVE-2021-33023
CRITICAL
Advantech WebAccess <9.02 - Buffer Overflow
Oct 18, 2021
CVSS 9.8
EPSS 0.01
CVE-2021-38431
MEDIUM
Advantech WebAccess SCADA <9.0.3 - Info Disclosure
Oct 15, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-38408
CRITICAL
Advantech WebAccess <9.02 - Buffer Overflow
Sep 09, 2021
CVSS 9.8
EPSS 0.01
CVE-2021-32943
CRITICAL
WebAccess/SCADA <8.4.5-9.0.1 - Buffer Overflow
Aug 10, 2021
CVSS 9.8
EPSS 0.01
CVE-2021-22676
MEDIUM
Advantech WebAccess/SCADA < 8.4.5 - Cross-Site Scripting in UserExcelOut.asp
Aug 10, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-22674
MEDIUM
WebAccess/SCADA <8.4.5-9.0.1 - Path Traversal
Aug 10, 2021
CVSS 6.5
EPSS 0.00
CVE-2021-21805
CRITICAL
NUCLEI
Advantech R-SeeNet 2.4.12 - OS Command Injection via ping.php Script
Aug 05, 2021
CVSS 9.8
EPSS 0.93
CVE-2021-21804
CRITICAL
Advantech R-SeeNet <2.4.12 - Code Injection
Jul 16, 2021
CVSS 9.8
EPSS 0.28
CVE-2021-21803
MEDIUM
NUCLEI
Advantech R-SeeNet - Stored Cross-Site Scripting via device_graph_page.php
Jul 16, 2021
CVSS 6.1
EPSS 0.71
CVE-2021-21802
MEDIUM
NUCLEI
Advantech R-SeeNet - Stored Cross-Site Scripting via device_graph_page.php
Jul 16, 2021
CVSS 6.1
EPSS 0.63
CVE-2021-21801
MEDIUM
NUCLEI
Advantech R-SeeNet - Stored Cross-Site Scripting via device_graph_page.php
Jul 16, 2021
CVSS 6.1
EPSS 0.85
CVE-2021-21800
MEDIUM
NUCLEI
Advantech R-SeeNet 2.4.12 - Cross-Site Scripting via ssh_form.php
Jul 16, 2021
CVSS 6.1
EPSS 0.65
CVE-2021-21799
MEDIUM
NUCLEI
Advantech R-SeeNet 2.4.12 - Cross-Site Scripting via telnet_form.php
Jul 16, 2021
CVSS 6.1
EPSS 0.73
CVE-2021-33004
HIGH
WebAccess HMI Designer <2.1.9.95 - Memory Corruption
Jun 24, 2021
CVSS 7.8
EPSS 0.00
CVE-2021-33002
HIGH
WebAccess HMI Designer <2.1.9.95 - RCE
Jun 24, 2021
CVSS 7.8
EPSS 0.00
CVE-2021-33000
HIGH
WebAccess HMI Designer <2.1.9.95 - RCE
Jun 24, 2021
CVSS 7.8
EPSS 0.00
CVE-2021-32956
MEDIUM
Advantech WebAccess/SCADA <9.0.1 - Open Redirect
Jun 18, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-32954
MEDIUM
Advantech WebAccess/SCADA <9.0.1 - Path Traversal
Jun 18, 2021
CVSS 6.5
EPSS 0.00
CVE-2021-32932
HIGH
Advantech iView < 5.7.03.6182 - SQL Injection
Jun 11, 2021
CVSS 7.5
EPSS 0.00
CVE-2021-32930
CRITICAL
Advantech iView < 5.7.03.6182 - Unauthenticated Arbitrary Code Execution
Jun 11, 2021
CVSS 9.8
EPSS 0.00
CVE-2021-34540
MEDIUM
Advantech WebAccess 8.4.2 and 8.4.4 - Cross-Site Scripting via WADashboard Username Column
Jun 11, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-27437
CRITICAL
Advantech WISE-PaaS/RMM < 9.0.1 - Unauthenticated Hard-coded Credentials Exposure
May 07, 2021
CVSS 9.1
EPSS 0.00
CVE-2021-22669
HIGH
WebAccess/SCADA <9.0.1 - Privilege Escalation
Apr 26, 2021
CVSS 8.8
EPSS 0.00
CVE-2021-27436
MEDIUM
Advantech WebAccess/SCADA < 9.0 - Cross-Site Scripting
Mar 18, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-22667
CRITICAL
Advantech BB-ESWGP506-2SFP-T Firmware <= 1.01.09 - Use of Hard-coded Credentials
Feb 24, 2021
CVSS 9.8
EPSS 0.01
Products
webaccess 103
advantech_webaccess 44
r-seenet 40
iview 37
webaccess\/scada 29
eki-6333ac-1gpo_firmware 20
eki-6333ac-2g_firmware 20
eki-6333ac-2gd_firmware 20
webaccess\/nms 20
WebAccess 15
webaccess\/hmi_designer 12
webaccess\/vpn 12
webaccess_scada 12
webaccess_dashboard 11
wise-deviceon_server 11
wise-4010lan_firmware 8
wise-4050lan_firmware 8
wise-4060lan_firmware 8
webaccess_hmi_designer 6
deviceon\/iedge 5
eki-1521_firmware 5
eki-1522_firmware 5
eki-1524_firmware 5
wise-paas\/rmm 5
adam-5630_firmware 3
advantech_studio 3
spectre_rt_ert351_firmware 3
susiaccess 3
WebAccess/SCADA 2
eki-1321_series_firmware 2
Quick Filters