ZeroHour

CVE-2019-3942

CVSS 3.1
7.5 high
EPSS
1%p71
Published
()
Modified
Description

Advantech WebAccess 8.3.4 does not properly restrict an RPC call that allows unauthenticated, remote users to read files. An attacker can use this vulnerability to recover the administrator password.

Vendors
advantech
Products
webaccess
Weakness
CWE-284, CWE-522
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.