CVE-2018-7503: Path Traversal
In Advantech WebAccess versions V8.220170817 and prior, WebAccess versions V8.3.0 and prior, WebAccess Dashboard versions V.2.0.15 and prior, WebAccess Scada Node versions prior to 8.3.1, and WebAccess/NMS 2.0.3 and prior, a path transversal vulnerability has been identified, which may allow an attacker to disclose sensitive information on the target.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-7503?
CVE-2018-7503 is classified as a high severity vulnerability due to the potential for unauthorized access to sensitive files and data through path traversal attacks.
How do I fix CVE-2018-7503?
To fix CVE-2018-7503, upgrade to Advantech WebAccess versions V8.3.1 or later, WebAccess Dashboard versions V2.0.16 or later, and WebAccess/NMS version 2.0.4 or later.
What kind of vulnerability is CVE-2018-7503?
CVE-2018-7503 is a path traversal vulnerability that allows attackers to gain access to restricted files within the affected software.
What products are affected by CVE-2018-7503?
CVE-2018-7503 affects Advantech WebAccess, WebAccess Dashboard, WebAccess Scada Node, and WebAccess/NMS versions listed prior to specified thresholds.
How can an attacker exploit CVE-2018-7503?
An attacker can exploit CVE-2018-7503 by manipulating URL paths to access sensitive files outside of the intended directories in the affected software.