First published: Tue Feb 21 2012(Updated: )
Advantech/BroadWin WebAccess before 7.0 allows remote attackers to (1) enable date and time syncing or (2) disable date and time syncing via a crafted URL.
Credit: cret@cert.org
Affected Software | Affected Version | How to fix |
---|---|---|
Advantech WebOP | <=6.0 | |
Advantech WebOP | =5.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-0237 is considered a medium severity vulnerability due to its potential impact on system functionality.
To fix CVE-2012-0237, upgrade Advantech WebAccess to version 7.0 or later.
CVE-2012-0237 affects Advantech WebAccess versions prior to 7.0, including versions 5.0 and up to 6.0.
CVE-2012-0237 can be exploited by remote attackers via a crafted URL.
Exploiting CVE-2012-0237 allows attackers to manipulate date and time synchronization settings on the affected systems.