Advantech

Iview

39 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 11.79%
  • Veröffentlicht 11.02.2021 18:15:17
  • Zuletzt bearbeitet 21.11.2024 05:50:24

Advantech iView versions prior to v5.7.03.6112 are vulnerable to a SQL injection, which may allow an unauthorized attacker to disclose information.

  • EPSS 3.12%
  • Veröffentlicht 11.02.2021 18:15:17
  • Zuletzt bearbeitet 21.11.2024 05:50:25

Advantech iView versions prior to v5.7.03.6112 are vulnerable to directory traversal, which may allow an attacker to read sensitive files.

  • EPSS 7.72%
  • Veröffentlicht 25.08.2020 19:15:12
  • Zuletzt bearbeitet 21.11.2024 05:07:00

Advantech iView, Versions 5.7 and prior. The affected product is vulnerable to path traversal vulnerabilities that could allow an attacker to create/download arbitrary files, limit system availability, and remotely execute code.

  • EPSS 3.47%
  • Veröffentlicht 15.07.2020 03:15:50
  • Zuletzt bearbeitet 21.11.2024 05:03:24

Advantech iView, versions 5.6 and prior, has an improper input validation vulnerability. Successful exploitation of this vulnerability could allow an attacker to remotely execute arbitrary code.

  • EPSS 1.7%
  • Veröffentlicht 15.07.2020 03:15:50
  • Zuletzt bearbeitet 21.11.2024 05:03:24

Advantech iView, versions 5.6 and prior, has an improper authentication for critical function (CWE-306) issue. Successful exploitation of this vulnerability may allow an attacker to obtain the information of the user table, including the administrato...

  • EPSS 1.75%
  • Veröffentlicht 15.07.2020 03:15:50
  • Zuletzt bearbeitet 21.11.2024 05:03:24

Advantech iView, versions 5.6 and prior, has an improper access control vulnerability. Successful exploitation of this vulnerability may allow an attacker to obtain all user accounts credentials.

  • EPSS 4.92%
  • Veröffentlicht 15.07.2020 02:15:12
  • Zuletzt bearbeitet 21.11.2024 05:03:23

Advantech iView, versions 5.6 and prior, contains multiple SQL injection vulnerabilities that are vulnerable to the use of an attacker-controlled string in the construction of SQL queries. An attacker could extract user credentials, read or modify in...

  • EPSS 4.89%
  • Veröffentlicht 15.07.2020 02:15:12
  • Zuletzt bearbeitet 21.11.2024 05:03:25

Advantech iView, versions 5.6 and prior, is vulnerable to multiple path traversal vulnerabilities that could allow an attacker to create/download arbitrary files, limit system availability, and remotely execute code.

  • EPSS 7.02%
  • Veröffentlicht 15.07.2020 02:15:12
  • Zuletzt bearbeitet 21.11.2024 05:03:24

Advantech iView, versions 5.6 and prior, has an improper neutralization of special elements used in a command (“command injection”) vulnerability. Successful exploitation of this vulnerability may allow an attacker to send a HTTP GET or POST request ...