VYPR
Unrated severityNVD Advisory· Published Jul 19, 2014· Updated Jun 17, 2026

CVE-2014-2364

CVE-2014-2364

Description

Multiple stack-based buffer overflows in Advantech WebAccess before 7.2 allow remote attackers to execute arbitrary code via a long string in the (1) ProjectName, (2) SetParameter, (3) NodeName, (4) CCDParameter, (5) SetColor, (6) AlarmImage, (7) GetParameter, (8) GetColor, (9) ServerResponse, (10) SetBaud, or (11) IPAddress parameter to an ActiveX control in (a) webvact.ocx, (b) dvs.ocx, or (c) webdact.ocx.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

6
  • cpe:2.3:a:advantech:advantech_webaccess:*:*:*:*:*:*:*:*+ 5 more
    • cpe:2.3:a:advantech:advantech_webaccess:*:*:*:*:*:*:*:*range: <=7.1
    • cpe:2.3:a:advantech:advantech_webaccess:5.0:*:*:*:*:*:*:*
    • cpe:2.3:a:advantech:advantech_webaccess:6.0:*:*:*:*:*:*:*
    • cpe:2.3:a:advantech:advantech_webaccess:7.0:*:*:*:*:*:*:*
    • (no CPE)range: <7.2
    • (no CPE)range: 0

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.