Relative Path Traversal Vulnerabilities in Advantech WebAccess Node
CVE-2020-12026
8.8HIGH
Summary
Advantech WebAccess Node, versions 8.4.4 and earlier, along with version 9.0.0, are affected by multiple relative path traversal vulnerabilities. These vulnerabilities could allow low privilege users to manipulate the application’s file system, potentially enabling them to overwrite sensitive files located outside the application’s designated directory. This can lead to unauthorized access and modifications within the system.
Affected Version(s)
Advantech WebAccess Node WebAccess Node Version 8.4.4 and prior, WebAccess Node Version 9.0.0
References
CVSS V3.1
Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved