Page 50 of 298 results (0.009 seconds)

CVSS: 10.0EPSS: 1%CPEs: 6EXPL: 0

Buffer overflow on Advantech EKI-1200 gateways with firmware before 1.63 allows remote attackers to execute arbitrary code via unspecified vectors. Desbordamiento de buffer en las pasarelas Advantech EKI-1200 con firmware anterior a 1.63 permite a atacantes remotos ejecutar código arbitrario a través de vectores no especificados. • https://ics-cert.us-cert.gov/advisories/ICSA-15-041-01 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVSS: 7.2EPSS: 6%CPEs: 1EXPL: 0

Stack-based buffer overflow in Advantech WebAccess, formerly BroadWin WebAccess, before 8.0 allows remote attackers to execute arbitrary code via a crafted ip_address parameter in an HTML document. Desbordamiento de buffer basado en pila de Advantech WebAccess antiguamente Broadwin WebAccess, anterior a 8.0 permite a atacantes remotos ejecutar código arbitrario a través de un parámetro ip_address manipulado en un documento HMTL. • https://ics-cert.us-cert.gov/advisories/ICSA-14-324-01 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVSS: 7.5EPSS: 31%CPEs: 1EXPL: 4

Multiple stack-based buffer overflows in Advantech AdamView 4.3 and earlier allow remote attackers to execute arbitrary code via a crafted (1) display properties or (2) conditional bitmap parameter in a GNI file. Múltiples desbordamientos de buffer basado en pila en Advantech AdamView 4.3 y anteriores permiten a atacantes remotos ejecutar código arbitrario a través de un parámetro (1) display properties o (2) conditional bitmap manipulado en un ficheros GNI. • https://www.exploit-db.com/exploits/35503 http://seclists.org/fulldisclosure/2014/Nov/57 http://www.coresecurity.com/advisories/advantech-adamView-buffer-overflow http://www.exploit-db.com/exploits/35503 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVSS: 9.0EPSS: 2%CPEs: 2EXPL: 4

cgi/utility.cgi in Advantech EKI-6340 2.05 Wi-Fi Mesh Access Point allows remote authenticated users to execute arbitrary commands via shell metacharacters in the pinghost parameter to ping.cgi. cgi/utility.cgi en Advantech EKI-6340 2.05 Wi-Fi Mesh Access Point permite a usuarios remotos autenticados ejecutar comandos arbitrarios a través de metacaracteres de shell en el parámetro pinghost en ping.cgi • https://www.exploit-db.com/exploits/35357 http://seclists.org/fulldisclosure/2014/Nov/58 http://www.coresecurity.com/advisories/advantech-eki-6340-command-injection http://www.securityfocus.com/archive/1/534021/100/0/threaded http://www.securityfocus.com/bid/71192 • CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') •

CVSS: 6.8EPSS: 15%CPEs: 1EXPL: 0

Stack-based buffer overflow in Advantech WebAccess (formerly BroadWin WebAccess) 7.2 allows remote attackers to execute arbitrary code via the UserName parameter. Desbordamiento de buffer basado en pila en Advantech WebAccess (antiguamente BroadWin WebAccess) 7.2 permite a atacantes remotos ejecutar código arbitrario a través del parámetro UserName. • http://www.securityfocus.com/bid/69535 https://ics-cert.us-cert.gov/advisories/ICSA-14-261-01 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •