CVE-2019-13552: Advantech Webaccess

High severity, CVSS 8.8. EPSS: 2.7% chance of exploitation in the next 30 days.

In WebAccess versions 8.4.1 and prior, multiple command injection vulnerabilities are caused by a lack of proper validation of user-supplied data and may allow arbitrary file deletion and remote code execution.

Affected products

  • Advantech Webaccess: up to and including 8.4.1

Published 2019-09-18. Last modified 2026-06-17.