First published: Mon Oct 29 2018(Updated: )
WebAccess Versions 8.3.2 and prior. The application fails to properly validate the length of user-supplied data, causing a buffer overflow condition that allows for arbitrary remote code execution.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Advantech WebOP | <=8.3.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-17910 is classified as a critical vulnerability due to its potential for arbitrary remote code execution.
To fix CVE-2018-17910, upgrade Advantech WebAccess to version 8.3.3 or later, which addresses the buffer overflow issue.
CVE-2018-17910 affects Advantech WebAccess versions 8.3.2 and earlier.
CVE-2018-17910 involves a buffer overflow vulnerability that can lead to arbitrary code execution.
Yes, there are known exploits for CVE-2018-17910 that leverage the buffer overflow condition to execute arbitrary code remotely.