PoC Index

CVE-2017-14016

MEDIUM 6.8EPSS 16.0%

A Stack-based Buffer Overflow issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. The application lacks proper validation of the length of user-supplied data prior to copying it to a stack-based buffer, which could allow an attacker to execute arbitrary code under the context of the process.

CVSS v3.0
6.3 MEDIUMCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L
CVSS v2.0
6.8 MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
EPSS
16.04% chance of exploitation in the next 30 days, 97th percentile
Published
2017-11-06
Updated
2024-08-05

Metasploit modules (1)

ExploitDB entries (1)

References

Related