CVE-2020-12022

Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0. An improper validation vulnerability exists that could allow an attacker to inject specially crafted input into memory where it can be executed.
References
Link Resource
https://www.us-cert.gov/ics/advisories/icsa-20-128-01 Third Party Advisory US Government Resource
https://www.zerodayinitiative.com/advisories/ZDI-20-598/ Third Party Advisory
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:advantech:webaccess:*:*:*:*:*:*:*:*
cpe:2.3:a:advantech:webaccess:9.0.0:*:*:*:*:*:*:*

Information

Published : 2020-05-08 05:15

Updated : 2020-05-11 13:47


NVD link : CVE-2020-12022

Mitre link : CVE-2020-12022


JSON object : View

CWE
CWE-129

Improper Validation of Array Index

Advertisement

dedicated server usa

Products Affected

advantech

  • webaccess