Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
146377 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.804478
Categoría:Web application abuses
Título:Advantech WebAccess Multiple Stack Based Buffer Overflow Vulnerabilities
Resumen:Advantech WebAccess is prone to multiple stack based buffer overflow vulnerabilities.
Descripción:Summary:
Advantech WebAccess is prone to multiple stack based buffer overflow vulnerabilities.

Vulnerability Insight:
The multiple stack based buffer
overflow flaws are due to an error when parsing NodeName, GotoCmd,
NodeName2, AccessCode, AccessCode2, UserName, projectname, password
parameters

Vulnerability Impact:
Successful exploitation will allow
attackers execution of arbitrary code within the context of the
application, or otherwise crash the whole application.

Affected Software/OS:
Advantech WebAccess before 7.3

Solution:
Upgrade to Advantech
WebAccess 7.2 or later.

CVSS Score:
6.8

CVSS Vector:
AV:N/AC:M/Au:N/C:P/I:P/A:P

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2014-0985
BugTraq ID: 69529
http://www.securityfocus.com/bid/69529
https://ics-cert.us-cert.gov/advisories/ICSA-14-261-01
Common Vulnerability Exposure (CVE) ID: CVE-2014-0986
BugTraq ID: 69531
http://www.securityfocus.com/bid/69531
Common Vulnerability Exposure (CVE) ID: CVE-2014-0987
BugTraq ID: 69532
http://www.securityfocus.com/bid/69532
Common Vulnerability Exposure (CVE) ID: CVE-2014-0988
BugTraq ID: 69533
http://www.securityfocus.com/bid/69533
Common Vulnerability Exposure (CVE) ID: CVE-2014-0989
BugTraq ID: 69534
http://www.securityfocus.com/bid/69534
Common Vulnerability Exposure (CVE) ID: CVE-2014-0990
BugTraq ID: 69535
http://www.securityfocus.com/bid/69535
Common Vulnerability Exposure (CVE) ID: CVE-2014-0991
BugTraq ID: 69536
http://www.securityfocus.com/bid/69536
Common Vulnerability Exposure (CVE) ID: CVE-2014-0992
BugTraq ID: 69538
http://www.securityfocus.com/bid/69538
CopyrightCopyright (C) 2014 Greenbone AG

Esta es sólo una de 146377 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.