PT-2019-13413 · Advantech · Webaccess

Publicado

2019-09-18

·

Atualizado

2020-10-16

·

CVE-2019-13550

CVSS v3.1

9.8

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions WebAccess versions 8.4.1 and prior
Description The issue is related to improper authorization, which may allow an attacker to disclose sensitive information. It can also cause improper control of code generation, potentially leading to remote code execution or a system crash.
Recommendations For versions 8.4.1 and prior, update to a version later than 8.4.1 to resolve the issue.

Correção

RCE

Improper Authorization

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2019-13550

Produtos afetados

Webaccess