← Voltar para CVEs
CVE-2018-8841
N/ADescricao
In Advantech WebAccess versions V8.2_20170817 and prior, WebAccess versions V8.3.0 and prior, WebAccess Dashboard versions V.2.0.15 and prior, WebAccess Scada Node versions prior to 8.3.1, and WebAccess/NMS 2.0.3 and prior, an improper privilege management vulnerability may allow an authenticated user to modify files when read access should only be given to the user.
Detalhes CVE
Pontuacao CVSS v3.1N/A
Publicado5/15/2018
Ultima modificacao11/21/2024
Fontenvd
Avistamentos honeypot0
Produtos afetados
advantech:webaccessadvantech:webaccess\/nmsadvantech:webaccess_dashboardadvantech:webaccess_scada
Fraquezas (CWE)
CWE-269CWE-269
Referencias
http://www.securityfocus.com/bid/104190(ics-cert@hq.dhs.gov)
https://ics-cert.us-cert.gov/advisories/ICSA-18-135-01(ics-cert@hq.dhs.gov)
http://www.securityfocus.com/bid/104190(af854a3a-2127-422b-91ae-364da2661108)
https://ics-cert.us-cert.gov/advisories/ICSA-18-135-01(af854a3a-2127-422b-91ae-364da2661108)
Correlacoes IOC
Sem correlacoes registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.