CVE-2017-12711: High severity Advantech WebAccess vulnerability
Published Aug 30, 2017
·Updated
An Incorrect Privilege Assignment issue was discovered in Advantech WebAccess versions prior to V8.220170817. A built-in user account has been granted a sensitive privilege that may allow a user to elevate to administrative privileges.
Affected Software
1 affected component
Advantech WebAccess<=8.2
Event History
Aug 30, 2017
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-12711?
CVE-2017-12711 has a high severity level due to its potential for unauthorized privilege escalation.
2
How do I fix CVE-2017-12711?
To fix CVE-2017-12711, upgrade Advantech WebAccess to version 8.2_20170817 or later.
3
What type of vulnerability is CVE-2017-12711?
CVE-2017-12711 is classified as an Incorrect Privilege Assignment vulnerability.
4
Which versions of Advantech WebAccess are affected by CVE-2017-12711?
Advantech WebAccess versions prior to 8.2_20170817 are affected by CVE-2017-12711.
5
What could an attacker do by exploiting CVE-2017-12711?
An attacker could exploit CVE-2017-12711 to elevate their privileges to administrative levels.