HTTP: Advantech WebAccess SCADA certUpdate.asp filename Directory Traversal
This signature detects attempts to exploit a known vulnerability against Advantech WebAccess SCADA. Successful exploitation could lead to arbitrary code execution on the target application with privileges of the web application process.
Extended Description
A Path Traversal issue was discovered in Advantech WebAccess/SCADA versions prior to V8.2_20170817. An attacker has read access to files within the directory structure of the target device.
Affected Products
Advantech webaccess/scada
References
CVE: CVE-2018-5445
mx-19.3
vmx-19.3
vsrx-19.2
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-19.4
vsrx3bsd-19.4
srx-branch-19.4
vsrx-19.4
vmx-19.4
mx-19.4
srxevo-25.4
vsrx-26.2
srx-26.2
srx-branch-26.2
vsrx3bsd-26.2
mx-12.3
srx-12.3
srx-branch-12.3
vsrx-12.3
Advantech
5.0