Known vulnerabilities in Advantech WebAccess 8.0_20150816 - page 3

Version: 8.0_20150816
Software CPE: cpe:2.3:a:advantech:advantech_webaccess:*:*:*:*:*:*:*:*
Total vulnerabilities: 72
Public exploits: 3
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Advantech WebAccess version 8.0_20150816 Advantech WebAccess 8.0_20150816 is affected by 72 vulnerabilities: 54 high, 2 medium, 16 low Critical High Medium Low

Vulnerabilities (72)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU27661 - Heap-based Buffer Overflow
CWE-122 High
No
No
- 11.05.2020 SB2020051108
#VU27660 - Heap-based Buffer Overflow
CWE-122 High
No
No
- 11.05.2020 SB2020051108
#VU27659 - Heap-based Buffer Overflow
CWE-122 High
No
No
- 11.05.2020 SB2020051108
#VU27658 - Heap-based Buffer Overflow
CWE-122 High
No
No
- 11.05.2020 SB2020051108
#VU27657 - Memory corruption
CVE-2020-12022
CWE-119 High
No
No
8.4.4_P0320844, 9.0.0_P0320900 11.05.2020 SB2020051108
#VU27656 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CWE-89 Low
No
No
- 11.05.2020 SB2020051108
#VU27655 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CWE-89 Low
No
No
- 11.05.2020 SB2020051108
#VU27654 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2020-12014
CWE-89 Low
No
No
8.4.4_P0320844, 9.0.0_P0320900 11.05.2020 SB2020051108
#VU26421 - Stack-based buffer overflow
CVE-2020-10607
CWE-121 High
No
No
8.4.4 27.03.2020 SB2020032714
#VU21202 - Improper Authorization
CVE-2019-13550
CWE-285 High
No
No
8.4.2 19.09.2019 SB2019091908
#VU21201 - Stack-based buffer overflow
CVE-2019-13556
CWE-121 High
No
No
8.4.2 19.09.2019 SB2019091908
#VU21200 - Command injection
CVE-2019-13552
CWE-77 High
No
No
8.4.2 19.09.2019 SB2019091908
#VU21196 - Improper Control of Generation of Code ('Code Injection')
CVE-2019-13558
CWE-94 High
No
No
8.4.2 18.09.2019 SB2019091908
#VU10222 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2018-5445
CWE-22 Low
No
No
- 25.01.2018 SB2018012507
#VU10221 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2018-5443
CWE-89 Low
No
No
- 23.01.2018 SB2018012507
#VU9893 - Improper input validation
CVE-2017-16753
CWE-20 Low
No
No
- 09.01.2018 SB2018010418
#VU9891 - Stack-based buffer overflow
CVE-2017-16720
CWE-121 Low
Public exploit available
No
- 09.01.2018 SB2018010418
#VU9890 - Stack-based buffer overflow
CVE-2017-16724
CWE-121 Low
No
No
- 09.01.2018 SB2018010418
#VU9889 - Untrusted Pointer Dereference
CVE-2017-16728
CWE-822 Low
No
No
- 09.01.2018 SB2018010418
#VU9892 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2017-16716
CWE-89 Low
Public exploit available
No
- 04.01.2018 SB2018010418


Showing elements 41 - 60 out of 72