High severity8.8NVD Advisory· Published Dec 18, 2025· Updated Jun 17, 2026
CVE-2025-14849
CVE-2025-14849
Description
Advantech WebAccess/SCADA is vulnerable to unrestricted file upload, which may allow an attacker to remotely execute arbitrary code.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:advantech:webaccess\/scada:9.2.1:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
3- github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2025/icsa-25-352-06.jsonnvdThird Party Advisory
- www.cisa.gov/news-events/ics-advisories/icsa-25-352-06nvdThird Party AdvisoryUS Government Resource
- www.advantech.com/en-us/support/details/installationnvdProduct
News mentions
0No linked articles in our index yet.