CVE-2012-0240: Critical severity advantech webop vulnerability
Published Feb 21, 2012
·Updated
GbScriptAddUp.asp in Advantech/BroadWin WebAccess before 7.0 does not properly perform authentication, which allows remote attackers to execute arbitrary code via unspecified vectors.
Affected Software
2 affected components
Advantech Advantech WebAccess<=6.0
Advantech Advantech WebAccess=5.0
Remediation
Event History
Feb 21, 2012
CVE Published
via MITRE·11:00 AM
Data Sourced
via MITRE·11:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-0240?
CVE-2012-0240 has a medium severity rating due to its potential to allow remote code execution.
2
How do I fix CVE-2012-0240?
To fix CVE-2012-0240, update Advantech WebAccess to version 7.0 or later.
3
What types of attacks can exploit CVE-2012-0240?
CVE-2012-0240 can be exploited to execute arbitrary code by bypassing authentication.
4
Which versions of Advantech WebAccess are affected by CVE-2012-0240?
CVE-2012-0240 affects Advantech WebAccess versions 6.0 and below.
5
Is there a workaround for CVE-2012-0240?
Currently, the primary solution for CVE-2012-0240 is upgrading to the latest software version.