First published: Wed Jul 15 2020(Updated: )
Advantech iView, versions 5.6 and prior, has an improper access control vulnerability. Successful exploitation of this vulnerability may allow an attacker to obtain all user accounts credentials.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Advantech iView | <=5.6 | |
Advantech iView | ||
Advantech iView Versions 5.6 and prior |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-14499 is a vulnerability in Advantech iView that allows remote attackers to disclose sensitive information.
No, authentication is not required to exploit this vulnerability.
The affected software is Advantech iView version up to and including 5.6.
CVE-2020-14499 has a severity rating of 7.5 (high).
There is currently no known fix for this vulnerability. It is recommended to follow the suggestions provided by the vendor or CERT/CSIRT.