CVE-2018-17908: Advantech Webaccess

High severity, CVSS 7.8. EPSS: 0.5% chance of exploitation in the next 30 days.

WebAccess Versions 8.3.2 and prior. During installation, the application installer disables user access control and does not re-enable it after the installation is complete. This could allow an attacker to run elevated arbitrary code.

Affected products

  • Advantech Webaccess: up to and including 8.3.2

Published 2018-10-29. Last modified 2026-06-17.