Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Elcazators

#32144of 53,624
7.8Total CVSS
Vulnerabilities · 1
PT-2023-6372
7.8
2023-10-16
Advantech · Advantech Webaccess · CVE-2023-4215
**Name of the Vulnerable Software and Affected Versions** Advantech WebAccess version 9.1.3 **Description** The issue is related to an exposure of sensitive information to an unauthorized actor, which could lead to the leakage of user credentials. This is due to a lack of protection for service data. Exploitation of this issue may allow a remote attacker to disclose protected information. **Recommendations** For Advantech WebAccess version 9.1.3, consider restricting access to sensitive information and user credentials until a patch or fix is available. As a temporary workaround, review and strengthen the protection of service data to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.