First published: Wed Sep 18 2019(Updated: )
In WebAccess versions 8.4.1 and prior, multiple stack-based buffer overflow vulnerabilities are caused by a lack of proper validation of the length of user-supplied data. Exploitation of these vulnerabilities may allow remote code execution.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Advantech WebAccess | <=8.4.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2019-13556 is high with a CVSS score of 8.8.
WebAccess versions 8.4.1 and prior are affected by CVE-2019-13556.
CVE-2019-13556 is caused by a lack of proper validation of the length of user-supplied data, leading to stack-based buffer overflow vulnerabilities.
Exploitation of CVE-2019-13556 may allow remote code execution.
You can find more information about CVE-2019-13556 at the following reference: [https://www.us-cert.gov/ics/advisories/icsa-19-260-01]