advantech

385 tracked vulnerabilities.

CVE-2021-33023 CRITICAL
Advantech WebAccess <9.02 - Buffer Overflow
Oct 18, 2021
CVSS 9.8
EPSS 0.01
CVE-2021-38431 MEDIUM
Advantech WebAccess SCADA <9.0.3 - Info Disclosure
Oct 15, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-38408 CRITICAL
Advantech WebAccess <9.02 - Buffer Overflow
Sep 09, 2021
CVSS 9.8
EPSS 0.01
CVE-2021-32943 CRITICAL
WebAccess/SCADA <8.4.5-9.0.1 - Buffer Overflow
Aug 10, 2021
CVSS 9.8
EPSS 0.01
CVE-2021-22676 MEDIUM
Advantech WebAccess/SCADA < 8.4.5 - Cross-Site Scripting in UserExcelOut.asp
Aug 10, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-22674 MEDIUM
WebAccess/SCADA <8.4.5-9.0.1 - Path Traversal
Aug 10, 2021
CVSS 6.5
EPSS 0.00
CVE-2021-21805 CRITICAL NUCLEI
Advantech R-SeeNet 2.4.12 - OS Command Injection via ping.php Script
Aug 05, 2021
CVSS 9.8
EPSS 0.93
CVE-2021-21804 CRITICAL
Advantech R-SeeNet <2.4.12 - Code Injection
Jul 16, 2021
CVSS 9.8
EPSS 0.28
CVE-2021-21803 MEDIUM NUCLEI
Advantech R-SeeNet - Stored Cross-Site Scripting via device_graph_page.php
Jul 16, 2021
CVSS 6.1
EPSS 0.71
CVE-2021-21802 MEDIUM NUCLEI
Advantech R-SeeNet - Stored Cross-Site Scripting via device_graph_page.php
Jul 16, 2021
CVSS 6.1
EPSS 0.63
CVE-2021-21801 MEDIUM NUCLEI
Advantech R-SeeNet - Stored Cross-Site Scripting via device_graph_page.php
Jul 16, 2021
CVSS 6.1
EPSS 0.85
CVE-2021-21800 MEDIUM NUCLEI
Advantech R-SeeNet 2.4.12 - Cross-Site Scripting via ssh_form.php
Jul 16, 2021
CVSS 6.1
EPSS 0.65
CVE-2021-21799 MEDIUM NUCLEI
Advantech R-SeeNet 2.4.12 - Cross-Site Scripting via telnet_form.php
Jul 16, 2021
CVSS 6.1
EPSS 0.73
CVE-2021-33004 HIGH
WebAccess HMI Designer <2.1.9.95 - Memory Corruption
Jun 24, 2021
CVSS 7.8
EPSS 0.00
CVE-2021-33002 HIGH
WebAccess HMI Designer <2.1.9.95 - RCE
Jun 24, 2021
CVSS 7.8
EPSS 0.00
CVE-2021-33000 HIGH
WebAccess HMI Designer <2.1.9.95 - RCE
Jun 24, 2021
CVSS 7.8
EPSS 0.00
CVE-2021-32956 MEDIUM
Advantech WebAccess/SCADA <9.0.1 - Open Redirect
Jun 18, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-32954 MEDIUM
Advantech WebAccess/SCADA <9.0.1 - Path Traversal
Jun 18, 2021
CVSS 6.5
EPSS 0.00
CVE-2021-32932 HIGH
Advantech iView < 5.7.03.6182 - SQL Injection
Jun 11, 2021
CVSS 7.5
EPSS 0.00
CVE-2021-32930 CRITICAL
Advantech iView < 5.7.03.6182 - Unauthenticated Arbitrary Code Execution
Jun 11, 2021
CVSS 9.8
EPSS 0.00
CVE-2021-34540 MEDIUM
Advantech WebAccess 8.4.2 and 8.4.4 - Cross-Site Scripting via WADashboard Username Column
Jun 11, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-27437 CRITICAL
Advantech WISE-PaaS/RMM < 9.0.1 - Unauthenticated Hard-coded Credentials Exposure
May 07, 2021
CVSS 9.1
EPSS 0.00
CVE-2021-22669 HIGH
WebAccess/SCADA <9.0.1 - Privilege Escalation
Apr 26, 2021
CVSS 8.8
EPSS 0.00
CVE-2021-27436 MEDIUM
Advantech WebAccess/SCADA < 9.0 - Cross-Site Scripting
Mar 18, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-22667 CRITICAL
Advantech BB-ESWGP506-2SFP-T Firmware <= 1.01.09 - Use of Hard-coded Credentials
Feb 24, 2021
CVSS 9.8
EPSS 0.01