advantech webaccesshmi-designer CVE-2020-16207 is a vulnerability in Advantech Webaccesshmi Designer
Published on August 6, 2020

Advantech WebAccess HMI Designer, Versions 2.1.9.31 and prior. Multiple heap-based buffer overflow vulnerabilities may be exploited by opening specially crafted project files that may overflow the heap, which may allow remote code execution, disclosure/modification of information, or cause the application to crash.

NVD

Weakness Type

Heap-based Buffer Overflow

A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().


Products Associated with CVE-2020-16207

Want to know whenever a new CVE is published for Advantech Webaccesshmi Designer? stack.watch will email you.

 

Exploit Probability

EPSS
2.63%
Percentile
85.48%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.