Show filters
325 Total Results
Displaying 121-130 of 325
Sort by:
Attacker Value
Unknown
CVE-2021-22667
Disclosure Date: February 24, 2021 (last updated February 22, 2025)
BB-ESWGP506-2SFP-T versions 1.01.09 and prior is vulnerable due to the use of hard-coded credentials, which may allow an attacker to gain unauthorized access and permit the execution of arbitrary code on the BB-ESWGP506-2SFP-T (versions 1.01.01 and prior).
0
Attacker Value
Unknown
CVE-2020-25161
Disclosure Date: February 23, 2021 (last updated February 22, 2025)
The WADashboard component of WebAccess/SCADA Versions 9.0 and prior may allow an attacker to control or influence a path used in an operation on the filesystem and remotely execute code as an administrator.
0
Attacker Value
Unknown
CVE-2020-13553
Disclosure Date: February 17, 2021 (last updated February 22, 2025)
An exploitable local privilege elevation vulnerability exists in the file system permissions of Advantech WebAccess/SCADA 9.0.1 installation. In webvrpcs Run Key Privilege Escalation in installation folder of WebAccess, an attacker can either replace binary or loaded modules to execute code with NT SYSTEM privilege.
0
Attacker Value
Unknown
CVE-2020-13555
Disclosure Date: February 17, 2021 (last updated February 22, 2025)
An exploitable local privilege elevation vulnerability exists in the file system permissions of Advantech WebAccess/SCADA 9.0.1 installation. In COM Server Application Privilege Escalation, an attacker can either replace binary or loaded modules to execute code with NT SYSTEM privilege.
0
Attacker Value
Unknown
CVE-2020-13551
Disclosure Date: February 17, 2021 (last updated February 22, 2025)
An exploitable local privilege elevation vulnerability exists in the file system permissions of Advantech WebAccess/SCADA 9.0.1 installation. In privilege escalation via PostgreSQL executable, an attacker can either replace binary or loaded modules to execute code with NT SYSTEM privilege.
0
Attacker Value
Unknown
CVE-2020-13550
Disclosure Date: February 17, 2021 (last updated February 22, 2025)
A local file inclusion vulnerability exists in the installation functionality of Advantech WebAccess/SCADA 9.0.1. A specially crafted application can lead to information disclosure. An attacker can send an authenticated HTTP request to trigger this vulnerability.
0
Attacker Value
Unknown
CVE-2020-13552
Disclosure Date: February 17, 2021 (last updated February 22, 2025)
An exploitable local privilege elevation vulnerability exists in the file system permissions of Advantech WebAccess/SCADA 9.0.1 installation. In privilege escalation via multiple service executables in installation folder of WebAccess, an attacker can either replace binary or loaded modules to execute code with NT SYSTEM privilege.
0
Attacker Value
Unknown
CVE-2021-22654
Disclosure Date: February 11, 2021 (last updated February 22, 2025)
Advantech iView versions prior to v5.7.03.6112 are vulnerable to a SQL injection, which may allow an unauthorized attacker to disclose information.
0
Attacker Value
Unknown
CVE-2021-22656
Disclosure Date: February 11, 2021 (last updated February 22, 2025)
Advantech iView versions prior to v5.7.03.6112 are vulnerable to directory traversal, which may allow an attacker to read sensitive files.
0
Attacker Value
Unknown
CVE-2021-22658
Disclosure Date: February 11, 2021 (last updated February 22, 2025)
Advantech iView versions prior to v5.7.03.6112 are vulnerable to a SQL injection, which may allow an attacker to escalate privileges to 'Administrator'.
0