CVE-2020-13555: Advantech Webaccess/scada

High severity, CVSS 8.8. EPSS: 0.5% chance of exploitation in the next 30 days.

An exploitable local privilege elevation vulnerability exists in the file system permissions of Advantech WebAccess/SCADA 9.0.1 installation. In COM Server Application Privilege Escalation, an attacker can either replace binary or loaded modules to execute code with NT SYSTEM privilege.

Affected products

  • Advantech Webaccess/scada: version 9.0.1 only

Published 2021-02-17. Last modified 2026-06-17.