CVE-2019-3942
CVE-2019-3942
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 1.4%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
01 Apr 2020Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Advantech WebAccess 8.3.4 does not properly restrict an RPC call that allows unauthenticated, remote users to read files. An attacker can use this vulnerability to recover the administrator password.
Affected products
n/a · Advantech WebAccessWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →