Known vulnerabilities in Advantech WebAccess 8.2_20170817 - page 4

Version: 8.2_20170817
Software CPE: cpe:2.3:a:advantech:advantech_webaccess:*:*:*:*:*:*:*:*
Total vulnerabilities: 69
Public exploits: 2
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Advantech WebAccess version 8.2_20170817 Advantech WebAccess 8.2_20170817 is affected by 69 vulnerabilities: 52 high, 1 medium, 16 low Critical High Medium Low

Vulnerabilities (69)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU12752 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2018-7503
CWE-22 Low
No
No
- 16.05.2018 SB2018051607
#VU12751 - Improper Authorization
CVE-2018-7505
CWE-285 High
No
No
- 16.05.2018 SB2018051607
#VU12750 - Exposure of sensitive information to an unauthorized actor
CVE-2018-10590
CWE-200 Low
No
No
- 16.05.2018 SB2018051607
#VU12749 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2018-7501
CWE-89 Low
No
No
- 15.05.2018 SB2018051607
#VU9893 - Improper input validation
CVE-2017-16753
CWE-20 Low
No
No
- 09.01.2018 SB2018010418
#VU9891 - Stack-based buffer overflow
CVE-2017-16720
CWE-121 Low
Public exploit available
No
- 09.01.2018 SB2018010418
#VU9890 - Stack-based buffer overflow
CVE-2017-16724
CWE-121 Low
No
No
- 09.01.2018 SB2018010418
#VU9889 - Untrusted Pointer Dereference
CVE-2017-16728
CWE-822 Low
No
No
- 09.01.2018 SB2018010418
#VU9892 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2017-16716
CWE-89 Low
Public exploit available
No
- 04.01.2018 SB2018010418


Showing elements 61 - 80 out of 69