Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0. An improper validation vulnerability exists that could allow an attacker to inject specially crafted input into memory where it can be executed.
References
Link | Resource |
---|---|
https://www.us-cert.gov/ics/advisories/icsa-20-128-01 | Third Party Advisory US Government Resource |
https://www.zerodayinitiative.com/advisories/ZDI-20-598/ | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2020-05-08 05:15
Updated : 2020-05-11 13:47
NVD link : CVE-2020-12022
Mitre link : CVE-2020-12022
JSON object : View
CWE
CWE-129
Improper Validation of Array Index
Products Affected
advantech
- webaccess