Security Advisory
CVE-2014-2368
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
The BrowseFolder method in the bwocxrun ActiveX control in Advantech WebAccess before 7.2 allows remote attackers to read arbitrary files via a crafted call.