CVE-2014-0992: Buffer Overflow
Published Sep 20, 2014
·Updated
Stack-based buffer overflow in Advantech WebAccess (formerly BroadWin WebAccess) 7.2 allows remote attackers to execute arbitrary code via the password parameter.
Affected Software
1 affected component
Advantech Advantech WebAccess=7.2
Event History
Sep 20, 2014
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-0992?
CVE-2014-0992 is categorized as a high-severity vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2014-0992?
To remediate CVE-2014-0992, upgrade Advantech WebAccess to a newer, patched version that eliminates this buffer overflow vulnerability.
3
What systems are affected by CVE-2014-0992?
CVE-2014-0992 specifically affects Advantech WebAccess version 7.2.
4
What type of attack can exploit CVE-2014-0992?
CVE-2014-0992 can be exploited by attackers using crafted input through the password parameter, leading to arbitrary code execution.
5
Is CVE-2014-0992 remotely exploitable?
Yes, CVE-2014-0992 is remotely exploitable, allowing attackers to target vulnerable installations over the network.