Security Advisory

CVE-2020-14497

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-07-15 01:50:54
Last updated 2024-08-04 12:46:34
Assigner icscert
State PUBLISHED

Description

Advantech iView, versions 5.6 and prior, contains multiple SQL injection vulnerabilities that are vulnerable to the use of an attacker-controlled string in the construction of SQL queries. An attacker could extract user credentials, read or modify information, and remotely execute code.