advantech webaccess CVE-2019-3940 is a vulnerability in Advantech Webaccess
Published on April 9, 2019

Advantech WebAccess 8.3.4 is vulnerable to file upload attacks via unauthenticated RPC call. An unauthenticated, remote attacker can use this vulnerability to execute arbitrary code.

NVD

Weakness Type

What is an Unrestricted File Upload Vulnerability?

The software allows the attacker to upload or transfer files of dangerous types that can be automatically processed within the product's environment.

CVE-2019-3940 has been classified to as an Unrestricted File Upload vulnerability or weakness.


Products Associated with CVE-2019-3940

Want to know whenever a new CVE is published for Advantech Webaccess? stack.watch will email you.

 

Affected Versions

Advantech WebAccess Version 8.3.4 is affected by CVE-2019-3940

Exploit Probability

EPSS
3.74%
Percentile
87.84%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.