First published: Mon Nov 06 2017(Updated: )
A Stack-based Buffer Overflow issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. The application lacks proper validation of the length of user-supplied data prior to copying it to a stack-based buffer, which could allow an attacker to execute arbitrary code under the context of the process.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Advantech WebOP | <8.2_20170817 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-14016 has been assigned a high severity rating due to its potential to allow arbitrary code execution.
To fix CVE-2017-14016, upgrade Advantech WebAccess to version 8.2_20170817 or later.
CVE-2017-14016 affects Advantech WebAccess versions prior to 8.2_20170817.
CVE-2017-14016 is categorized as a stack-based buffer overflow vulnerability.
Yes, an attacker could potentially exploit CVE-2017-14016 remotely due to improper validation of user-supplied data.