CVE-2018-6911

CRITICAL

Advantech WebAccess 8.3.0 - Remote Code Execution via VBWinExec Command Parameter

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2018-6911. PoCs published by Nassim Asrir.

AI-analyzed exploit summary This exploit leverages a vulnerable function (VBWinExec) in Advantech WebAccess Node 8.3.0's AspVBObj.dll to execute arbitrary OS commands via a single argument. The PoC demonstrates remote code execution by launching calc.exe through an ActiveX object.

Description

The VBWinExec function in Node\AspVBObj.dll in Advantech WebAccess 8.3.0 allows remote attackers to execute arbitrary OS commands via a single argument (aka the command parameter).

Exploits (1)

exploitdb WORKING POC
by Nassim Asrir · htmlremotewindows
https://www.exploit-db.com/exploits/44031

This exploit leverages a vulnerable function (VBWinExec) in Advantech WebAccess Node 8.3.0's AspVBObj.dll to execute arbitrary OS commands via a single argument. The PoC demonstrates remote code execution by launching calc.exe through an ActiveX object.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Advantech WebAccess Node 8.3.0
No auth needed
Prerequisites: Victim must visit a malicious webpage using Internet Explorer · ActiveX controls must be enabled
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (1)

Core 1
Core References
Exploit, Third Party Advisory, VDB Entry exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/44031/

Scores

CVSS v3 9.8
EPSS 0.2918
EPSS Percentile 96.7%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-78
Status published
Products (1)
advantech/webaccess 8.3.0
Published Feb 13, 2018
Tracked Since Feb 18, 2026