CVE-2020-16215: Advantech Webaccess/hmi Designer

High severity, CVSS 7.8. EPSS: 4% chance of exploitation in the next 30 days.

Advantech WebAccess HMI Designer, Versions 2.1.9.31 and prior. Processing specially crafted project files lacking proper validation of user supplied data may cause a stack-based buffer overflow, which may allow remote code execution, disclosure/modification of information, or cause the application to crash.

Affected products

  • Advantech Webaccess/hmi Designer: up to and including 2.1.9.31

Published 2020-08-06. Last modified 2026-06-17.