CVE-2014-0765: Advantech Webaccess

High severity, CVSS 7.5. EPSS: 2.7% chance of exploitation in the next 30 days.

To exploit this vulnerability, the attacker sends data from the GotoCmd argument to control. If the value of the argument is overly long, the static stack buffer can be overflowed. This will allow the attacker to execute arbitrary code remotely.

Affected products

  • Advantech Advantech Webaccess: up to and including 7.1; version 5.0 only; version 6.0 only; version 7.0 only

Published 2014-04-12. Last modified 2026-06-17.