Unspecified vulnerability in Advantech WebAccess before 7.2 allows remote authenticated users to create or delete arbitrary files via unknown vectors.

Project Subscriptions

Vendors Products
Advantech Subscribe
Advantech Webaccess Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2014-2402 Unspecified vulnerability in Advantech WebAccess before 7.2 allows remote authenticated users to create or delete arbitrary files via unknown vectors.
Fixes

Solution

Advantech released a new WebAccess Installation Package v7.2 on June 6, 2014, that removes some vulnerable ActiveX components and resolves the vulnerabilities within others. The download link for v7.2 is available at: http://webaccess.advantech.com/


Workaround

No workaround given by the vendor.

History

Mon, 06 Oct 2025 18:00:00 +0000

Type Values Removed Values Added
Title Advantech WebAccess Improper Access Control
Weaknesses CWE-284
References
Metrics cvssV2_0

{'score': 5.5, 'vector': 'AV:N/AC:L/Au:S/C:N/I:P/A:P'}

cvssV2_0

{'score': 6.5, 'vector': 'AV:N/AC:L/Au:S/C:P/I:P/A:P'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2025-10-06T17:51:28.289Z

Reserved: 2014-03-13T00:00:00

Link: CVE-2014-2365

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2014-07-19T05:09:27.627

Modified: 2025-10-06T18:15:48.070

Link: CVE-2014-2365

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses