CVE-2017-12710

Publication date

2017-08-30 18:00:00

Family

icscert

State

PUBLISHED

Description

A SQL Injection issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. By submitting a specially crafted parameter, it is possible to inject arbitrary SQL statements that could allow an attacker to obtain sensitive information.