CVE-2020-10617: Advantech Webaccess/nms
High severity, CVSS 7.5. EPSS: 1.3% chance of exploitation in the next 30 days.
There are multiple ways an unauthenticated attacker could perform SQL injection on WebAccess/NMS (versions prior to 3.0.2) to gain access to sensitive information.
Affected products
- Advantech Webaccess/nms: before 3.0.2 (fixed in 3.0.2)
Published 2020-04-09. Last modified 2026-06-17.