First published: Mon Oct 16 2023(Updated: )
Advantech WebAccess version 9.1.3 contains an exposure of sensitive information to an unauthorized actor vulnerability that could leak user credentials.
Credit: ics-cert@hq.dhs.gov ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Advantech WebAccess | =9.1.3 | |
=9.1.3 |
Advantech recommends users update WebAccess to Version 9.1.4 https://www.advantech.com/en/support/details/installation
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-4215 is a vulnerability in Advantech WebAccess version 9.1.3 that exposes sensitive information to unauthorized actors, potentially leading to the leakage of user credentials.
CVE-2023-4215 has a severity rating of high with a CVSS score of 7.5.
Advantech WebAccess version 9.1.3 is affected by CVE-2023-4215.
The CWE for CVE-2023-4215 is CWE-200.
To fix the CVE-2023-4215 vulnerability, it is recommended to update Advantech WebAccess to a patched version or apply any security patches provided by the vendor.