CVE-2021-38408: Buffer Overflow
Published Sep 9, 2021
·Updated
A stack-based buffer overflow vulnerability in Advantech WebAccess Versions 9.02 and prior caused by a lack of proper validation of the length of user-supplied data may allow remote code execution.
Affected Software
2 affected components
Advantech WebAccess<=9.02
Advantech WebAccess<=9.02
Event History
Sep 9, 2021
CVE Published
via MITRE·11:24 AM
Data Sourced
via MITRE·11:24 AM
DescriptionWeakness
Data Sourced
via NVD·12:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for the stack-based buffer overflow in Advantech WebAccess?
The vulnerability ID is CVE-2021-38408.
2
What is the severity rating of CVE-2021-38408?
The severity rating of CVE-2021-38408 is critical with a score of 9.8.
3
What is affected by the CVE-2021-38408 vulnerability?
Advantech WebAccess versions 9.02 and prior are affected by the CVE-2021-38408 vulnerability.
4
What is the potential impact of CVE-2021-38408?
The potential impact of CVE-2021-38408 is remote code execution.
5
Is there a fix available for CVE-2021-38408?
It is recommended to update Advantech WebAccess to a version later than 9.02 to address the CVE-2021-38408 vulnerability.