Security Advisory
CVE-2014-2367
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
The ChkCookie subroutine in an ActiveX control in broadweb/include/gChkCook.asp in Advantech WebAccess before 7.2 allows remote attackers to read arbitrary files via a crafted call.