Security Advisory

CVE-2019-3942

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-04-01 16:04:29
Last updated 2024-08-04 19:26:27
Assigner tenable
State PUBLISHED

Description

Advantech WebAccess 8.3.4 does not properly restrict an RPC call that allows unauthenticated, remote users to read files. An attacker can use this vulnerability to recover the administrator password.