First published: Fri Apr 05 2019(Updated: )
Advantech WebAccess/SCADA, Versions 8.3.5 and prior. Multiple stack-based buffer overflow vulnerabilities, caused by a lack of proper validation of the length of user-supplied data, may allow remote code execution.
Credit: ics-cert@hq.dhs.gov ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Advantech WebAccess | <=8.3.5 | |
Advantech WebAccess | ||
<=8.3.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Advantech WebAccess Node vulnerability is CVE-2019-6550.
The severity of the CVE-2019-6550 vulnerability is critical with a CVSS score of 9.8.
The CVE-2019-6550 vulnerability affects Advantech WebAccess versions up to and including 8.3.5.
No, authentication is not required to exploit the CVE-2019-6550 vulnerability.
To fix the CVE-2019-6550 vulnerability, it is recommended to update Advantech WebAccess to a version beyond 8.3.5 or apply any patches or security updates provided by the vendor.