Описание
Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0. Multiple stack-based buffer overflow vulnerabilities exist caused by a lack of proper validation of the length of user-supplied data, which may allow remote code execution.
Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0. Multiple stack-based buffer overflow vulnerabilities exist caused by a lack of proper validation of the length of user-supplied data, which may allow remote code execution.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2020-12002
- https://www.us-cert.gov/ics/advisories/icsa-20-128-01
- https://www.zerodayinitiative.com/advisories/ZDI-20-590
- https://www.zerodayinitiative.com/advisories/ZDI-20-591
- https://www.zerodayinitiative.com/advisories/ZDI-20-592
- https://www.zerodayinitiative.com/advisories/ZDI-20-619
- https://www.zerodayinitiative.com/advisories/ZDI-20-622
- https://www.zerodayinitiative.com/advisories/ZDI-20-624
- https://www.zerodayinitiative.com/advisories/ZDI-20-625
- https://www.zerodayinitiative.com/advisories/ZDI-20-633
- https://www.zerodayinitiative.com/advisories/ZDI-20-634
Связанные уязвимости
CVSS3: 9.8
nvd
больше 5 лет назад
Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0. Multiple stack-based buffer overflow vulnerabilities exist caused by a lack of proper validation of the length of user-supplied data, which may allow remote code execution.