CVE-2019-13556: Buffer Overflow
Published Sep 18, 2019
·Updated
In WebAccess versions 8.4.1 and prior, multiple stack-based buffer overflow vulnerabilities are caused by a lack of proper validation of the length of user-supplied data. Exploitation of these vulnerabilities may allow remote code execution.
Affected Software
1 affected component
Advantech WebAccess<=8.4.1
Event History
Sep 18, 2019
CVE Published
via MITRE·09:05 PM
Data Sourced
via MITRE·09:05 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-13556?
The severity of CVE-2019-13556 is high with a CVSS score of 8.8.
2
What software is affected by CVE-2019-13556?
WebAccess versions 8.4.1 and prior are affected by CVE-2019-13556.
3
What is the cause of CVE-2019-13556?
CVE-2019-13556 is caused by a lack of proper validation of the length of user-supplied data, leading to stack-based buffer overflow vulnerabilities.
4
What can exploitation of CVE-2019-13556 allow?
Exploitation of CVE-2019-13556 may allow remote code execution.
5
Where can I find more information about CVE-2019-13556?
You can find more information about CVE-2019-13556 at the following reference: [https://www.us-cert.gov/ics/advisories/icsa-19-260-01]