← Back

Advantech

advantech

378 CVEs • 95 products

Products (95)

Click to collapse
Toggle
Webaccess
webaccess
R Seenet
r-seenet
Iview
iview
Webaccess/nms
webaccess/nms
Webaccess/vpn
webaccess/vpn
Wise Paas/rmm
wise-paas/rmm
Susiaccess
susiaccess
Adam 6015
adam-6015
Adam 6017
adam-6017
Adam 6018
adam-6018
Adam 6022
adam-6022
Adam 6024
adam-6024
Adam 6050
adam-6050
Adam 6050w
adam-6050w
Adam 6051
adam-6051
Adam 6051w
adam-6051w
Adam 6052
adam-6052
Adam 6060
adam-6060
Adam 6060w
adam-6060w
Adam 6066
adam-6066
Adam 6501
adam-6501
Eki 6340
eki-6340
Adamview
adamview
Webop
webop
Diaganywhere
diaganywhere
Sq Manager
sq_manager
Wise Paas/ota
wise-paas/ota
Eki 1221
eki-1221
Eki 1221d
eki-1221d
Eki 1222
eki-1222
Eki 1222d
eki-1222d
Eki 1224
eki-1224
Eki 1321
eki-1321
Eki 1322
eki-1322
Eki 1361
eki-1361
Eki 1362
eki-1362
Vesp211 Eu
vesp211-eu
Vesp211 232
vesp211-232
Adam 3600
adam-3600
Eki 1521
eki-1521
Eki 1522
eki-1522
Eki 1524
eki-1524
Adam 5630
adam-5630
Adam 5550
adam-5550
Eki 6333ac 2g
eki-6333ac-2g
Wise 4060lan
wise-4060lan
Wise 4050lan
wise-4050lan
Wise 4010lan
wise-4010lan
Tp 3250
tp_3250

CVEs (378)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Advantech
1Susiaccess
May 13, 2026
Feb 13, 2017
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
An issue was discovered in Advantech SUISAccess Server Version 3.0 and prior. The admin password is stored in the system and is encrypted with a static key hard-coded in the program. Attackers could reverse the admin acc...Show more
An issue was discovered in Advantech SUISAccess Server Version 3.0 and prior. The admin password is stored in the system and is encrypted with a static key hard-coded in the program. Attackers could reverse the admin account password for use.Show less
1Advantech
1Susiaccess
May 13, 2026
Feb 13, 2017
N/A· v4
7.0 HIGH· v3
6.0 MEDIUM· v2
An issue was discovered in Advantech SUISAccess Server Version 3.0 and prior. The directory traversal/file upload error allows an attacker to upload and unpack a zip file.
1Advantech
1Susiaccess
May 13, 2026
Feb 13, 2017
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
An issue was discovered in Advantech SUISAccess Server Version 3.0 and prior. An attacker could traverse the file system and extract files that can result in information disclosure.
1Advantech
1Webaccess
May 6, 2026
Jun 25, 2016
N/A· v4
5.0 MEDIUM· v3
4.3 MEDIUM· v2
Buffer overflow in Advantech WebAccess before 8.1_20160519 allows local users to cause a denial of service via a crafted DLL file.
1Advantech
1Webaccess
May 6, 2026
Jun 25, 2016
N/A· v4
6.6 MEDIUM· v3
3.3 LOW· v2
Unspecified ActiveX controls in Advantech WebAccess before 8.1_20160519 allow remote authenticated users to obtain sensitive information or modify data via unknown vectors, related to the INTERFACESAFE_FOR_UNTRUSTED_CALL...Show more
Unspecified ActiveX controls in Advantech WebAccess before 8.1_20160519 allow remote authenticated users to obtain sensitive information or modify data via unknown vectors, related to the INTERFACESAFE_FOR_UNTRUSTED_CALLER (aka safe for scripting) flag.Show less
1Advantech
2Vesp211 232 Firmware
Vesp211 Eu Firmware
May 6, 2026
Feb 21, 2016
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
The web interface on Advantech/B+B SmartWorx VESP211-EU devices with firmware 1.7.2 and VESP211-232 devices with firmware 1.5.1 and 1.7.2 relies on the client to implement access control, which allows remote attackers to...Show more
The web interface on Advantech/B+B SmartWorx VESP211-EU devices with firmware 1.7.2 and VESP211-232 devices with firmware 1.5.1 and 1.7.2 relies on the client to implement access control, which allows remote attackers to perform administrative actions via modified JavaScript code.Show less
1Advantech
1Webaccess
May 6, 2026
Jan 15, 2016
N/A· v4
7.5 HIGH· v3
10.0 HIGH· v2
Buffer overflow in the BwpAlarm subsystem in Advantech WebAccess before 8.1 allows remote attackers to cause a denial of service via a crafted RPC request.
1Advantech
1Webaccess
May 6, 2026
Jan 15, 2016
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Integer overflow in the Kernel service in Advantech WebAccess before 8.1 allows remote attackers to execute arbitrary code or cause a denial of service (stack-based buffer overflow) via a crafted RPC request.
1Advantech
1Webaccess
May 6, 2026
Jan 15, 2016
N/A· v4
8.1 HIGH· v3
9.3 HIGH· v2
Race condition in Advantech WebAccess before 8.1 allows remote attackers to execute arbitrary code or cause a denial of service (buffer overflow) via a crafted request.
1Advantech
1Webaccess
May 6, 2026
Jan 15, 2016
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Multiple heap-based buffer overflows in Advantech WebAccess before 8.1 allow remote attackers to execute arbitrary code via unspecified vectors.
1Advantech
1Webaccess
May 6, 2026
Jan 15, 2016
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Multiple stack-based buffer overflows in Advantech WebAccess before 8.1 allow remote attackers to execute arbitrary code via unspecified vectors.
1Advantech
1Webaccess
May 6, 2026
Jan 15, 2016
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Directory traversal vulnerability in Advantech WebAccess before 8.1 allows remote attackers to list arbitrary virtual-directory files via unspecified vectors.
1Advantech
1Webaccess
May 6, 2026
Jan 15, 2016
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Unrestricted file upload vulnerability in the uploadImageCommon function in the UploadAjaxAction script in the WebAccess Dashboard Viewer in Advantech WebAccess before 8.1 allows remote attackers to write to files of arb...Show more
Unrestricted file upload vulnerability in the uploadImageCommon function in the UploadAjaxAction script in the WebAccess Dashboard Viewer in Advantech WebAccess before 8.1 allows remote attackers to write to files of arbitrary types via unspecified vectors.Show less
1Advantech
1Webaccess
May 6, 2026
Jan 15, 2016
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Advantech WebAccess before 8.1 allows remote attackers to obtain sensitive information via crafted input.
1Advantech
1Webaccess
May 6, 2026
Jan 15, 2016
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Advantech WebAccess before 8.1 allows remote attackers to bypass an intended administrative requirement and obtain file or folder access via unspecified vectors.
1Advantech
1Webaccess
May 6, 2026
Jan 15, 2016
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Advantech WebAccess before 8.1 allows remote attackers to cause a denial of service (out-of-bounds memory access) via unspecified vectors.
1Advantech
1Webaccess
May 6, 2026
Jan 15, 2016
N/A· v4
8.1 HIGH· v3
9.3 HIGH· v2
Advantech WebAccess before 8.1 allows remote attackers to execute arbitrary code via vectors involving a browser plugin.
1Advantech
1Webaccess
May 6, 2026
Jan 15, 2016
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
Cross-site scripting (XSS) vulnerability in Advantech WebAccess before 8.1 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
1Advantech
1Webaccess
May 6, 2026
Jan 15, 2016
N/A· v4
8.1 HIGH· v3
6.5 MEDIUM· v2
SQL injection vulnerability in Advantech WebAccess before 8.1 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.
1Advantech
1Webaccess
May 6, 2026
Jan 15, 2016
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
Cross-site request forgery (CSRF) vulnerability in Advantech WebAccess before 8.1 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.