advantech webaccess CVE-2019-3942 is a vulnerability in Advantech Webaccess
Published on April 1, 2020

Advantech WebAccess 8.3.4 does not properly restrict an RPC call that allows unauthenticated, remote users to read files. An attacker can use this vulnerability to recover the administrator password.

NVD

Weakness Type

What is an Authorization Vulnerability?

The software does not restrict or incorrectly restricts access to a resource from an unauthorized actor.

CVE-2019-3942 has been classified to as an Authorization vulnerability or weakness.


Products Associated with CVE-2019-3942

Want to know whenever a new CVE is published for Advantech Webaccess? stack.watch will email you.

 

Exploit Probability

EPSS
0.94%
Percentile
75.95%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.