First published: Tue Feb 21 2012(Updated: )
GbScriptAddUp.asp in Advantech/BroadWin WebAccess before 7.0 does not properly perform authentication, which allows remote attackers to execute arbitrary code via unspecified vectors.
Credit: cret@cert.org
Affected Software | Affected Version | How to fix |
---|---|---|
Advantech WebOP | <=6.0 | |
Advantech WebOP | =5.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-0240 has a medium severity rating due to its potential to allow remote code execution.
To fix CVE-2012-0240, update Advantech WebAccess to version 7.0 or later.
CVE-2012-0240 can be exploited to execute arbitrary code by bypassing authentication.
CVE-2012-0240 affects Advantech WebAccess versions 6.0 and below.
Currently, the primary solution for CVE-2012-0240 is upgrading to the latest software version.