VYPR
Critical severity9.8NVD Advisory· Published May 15, 2018· Updated Jun 17, 2026

CVE-2018-7505

CVE-2018-7505

Description

In Advantech WebAccess versions V8.2_20170817 and prior, WebAccess versions V8.3.0 and prior, WebAccess Dashboard versions V.2.0.15 and prior, WebAccess Scada Node versions prior to 8.3.1, and WebAccess/NMS 2.0.3 and prior, a TFTP application has unrestricted file uploads to the web application without authorization, which may allow an attacker to execute arbitrary code.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

8
  • cpe:2.3:a:advantech:webaccess:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:advantech:webaccess:*:*:*:*:*:*:*:*range: <=8.2_20170817
    • (no CPE)range: <=V8.3.0
    • (no CPE)range: WebAccess versions V8.2_20170817 and prior, WebAccess versions V8.3.0 and prior, WebAccess Dashboard versions V.2.0.15 and prior, WebAccess Scada Node versions prior to 8.3.1, WebAccess/NMS 2.0.3 and prior.
  • cpe:2.3:a:advantech:webaccess\/nms:*:*:*:*:*:*:*:*
    Range: <=2.0.3
  • cpe:2.3:a:advantech:webaccess_dashboard:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:advantech:webaccess_dashboard:*:*:*:*:*:*:*:*range: <=2.0.15
    • (no CPE)range: <=V.2.0.15
  • cpe:2.3:a:advantech:webaccess_scada:*:*:*:*:*:*:*:*
    Range: <8.3.1
  • Range: <8.3.1

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.