ID:1599 - Exploit for Stack-based buffer overflow in Advantech WebAccess - CVE-2017-14016

 
Main Vulnerability Database Exploits ID:1599 - Exploit for Stack-based buffer overflow in Advantech WebAccess - CVE-2017-14016

ID:1599 - Exploit for Stack-based buffer overflow in Advantech WebAccess - CVE-2017-14016

Published: March 18, 2020


Vulnerability identifier: #VU9112
Vulnerability risk: High
CVE-ID: CVE-2017-14016
CWE-ID: CWE-121
Exploitation vector: Remote access
Vulnerable software:
Advantech WebAccess

Link to public exploit:


Vulnerability description

The vulnerability allows a remote attacker to execute arbitrary code on the target system.

The weakness exists due to improper validation of the length of user-supplied data. A remote attacker can trick the victim into loading a specially crafted input, trigger stack-based buffer overflow and execute arbitrary code with privileges of the current user.

Successful exploitation of the vulnerability may result in system compromise.

Remediation

Install update from vendor's website.