VYPR

Vendor CVEs

Advantech

All CVEs

405 total · sorted by risk
  • CVE-2011-4523Feb 21, 2012
    risk 0.00cvss —epss 0.01

    Cross-site scripting (XSS) vulnerability in bwview.asp in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters.

  • CVE-2011-4522Feb 21, 2012
    risk 0.00cvss —epss 0.01

    Cross-site scripting (XSS) vulnerability in bwerrdn.asp in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters.

  • CVE-2011-4521Feb 21, 2012
    risk 0.00cvss —epss 0.01

    SQL injection vulnerability in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to execute arbitrary SQL commands via crafted string input.

  • CVE-2011-1914Feb 21, 2012
    risk 0.00cvss —epss 0.04

    Buffer overflow in the Advantech ADAM OLE for Process Control (OPC) Server ActiveX control in ADAM OPC Server before 3.01.012, Modbus RTU OPC Server before 3.01.010, and Modbus TCP OPC Server before 3.01.010 allows remote attackers to execute arbitrary code via unspecified…

  • CVE-2008-5848Jan 6, 2009
    risk 0.00cvss —epss 0.03

    The Advantech ADAM-6000 module has 00000000 as its default password, which makes it easier for remote attackers to obtain access through an HTTP session, and (1) monitor or (2) control the module's Modbus/TCP I/O activity.

Page 9 of 9