Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

WebAccess/SCADA — Vulnerabilities & Security Advisories 25

All 25 CVE vulnerabilities found in WebAccess/SCADA, with AI-generated Chinese analysis, references, and POCs.

This page documents known vulnerability aggregations for the WebAccess/SCADA product, a popular industrial control system developed by Advantech, focusing on a range of common weakness types such as authentication bypass, remote code execution, and information disclosure. It collects and organizes security advisories, bug reports, and CVE entries that have been identified in the wild or reported by researchers, covering incidents from the early 2010s through the present day. By aggregating these disparate data sources, the platform allows security professionals and system administrators to efficiently track Advantech’s official security advisories as they are issued, providing immediate context on patch availability and severity levels. Users can also analyze the evolution of specific vulnerability classes within the SCADA ecosystem to understand common attack vectors and mitigation strategies specific to industrial environments. Furthermore, the page serves as a comprehensive historical record for WebAccess/SCADA, enabling engineers to look up the full vulnerability history of specific software versions and assess the cumulative risk posture of their deployed infrastructure. This consolidated view supports better decision-making for lifecycle management, ensuring that legacy systems are evaluated against current threat landscapes. Ultimately, this resource bridges the gap between raw vulnerability data and actionable security intelligence, helping organizations maintain the integrity and availability of their critical industrial processes.

Vendor: n/a

CVE IDTitleCVSSSeverityPublished
CVE-2025-67653 Advantech WebAccess/SCADA Path Traversal CWE-22 4.3 Medium2025-12-18
CVE-2025-46268 Advantech WebAccess/SCADA SQL Injection CWE-89 6.3 Medium2025-12-18
CVE-2025-14848 Advantech WebAccess/SCADA Absolute Path Traversal CWE-36 4.3 Medium2025-12-18
CVE-2025-14849 Advantech WebAccess/SCADA Unrestricted Upload of File with Dangerous Type CWE-434 8.8 High2025-12-18
CVE-2025-14850 Advantech WebAccess/SCADA Improper Limitation of a Pathname to a Restricted Directory CWE-22 8.1 High2025-12-18
CVE-2024-2453 Advantech WebAccess/SCADA SQL Injection CWE-89 6.4 Medium2024-03-21
CVE-2023-1437 CVE-2023-1437 CWE-822 9.8 Critical2023-08-02
CVE-2023-2866 Advantech WebAccess Insufficient Type Distinction CWE-351 7.3 High2023-06-07
CVE-2023-22450 Advantech WebAccess/SCADA 代码问题漏洞 CWE-434 7.2 High2023-06-05
CVE-2023-32540 Advantech WebAccess/SCADA 代码注入漏洞 CWE-94 7.2 High2023-06-05
CVE-2023-32628 Advantech WebAccess/SCADA 代码问题漏洞 CWE-434 7.2 High2023-06-05
CVE-2021-32943 Advantech WebAccess/SCADA 缓冲区错误漏洞 CWE-121 9.8 -2021-08-10
CVE-2021-22676 Advantech WebAccess/SCADA 跨站脚本漏洞 CWE-79 6.1 -2021-08-10
CVE-2021-22674 Advantech WebAccess/SCADA 路径遍历漏洞 CWE-23 6.5 -2021-08-10
CVE-2019-3975 Advantech WebAccess/SCADA 缓冲区错误漏洞 9.8 -2019-09-10
CVE-2019-10993 研华 Advantech WebAccess/SCADA 缓冲区错误漏洞 9.8 -2019-06-28
CVE-2019-10987 Advantech WebAccess/SCADA 缓冲区错误漏洞 8.8 -2019-06-28
CVE-2019-10983 Advantech WebAccess/SCADA 缓冲区错误漏洞 7.5 -2019-06-28
CVE-2019-10989 Advantech WebAccess/SCADA 缓冲区错误漏洞 9.8 -2019-06-28
CVE-2019-10991 Advantech WebAccess/SCADA 缓冲区错误漏洞 9.8 -2019-06-28
CVE-2019-10985 Advantech WebAccess/SCADA 路径遍历漏洞 9.1 -2019-06-28
CVE-2019-6554 Advantech WebAccess/SCADA 访问控制错误漏洞 CWE-284 7.5 -2019-04-05
CVE-2019-6550 Advantech WebAccess/SCADA 缓冲区错误漏洞 CWE-121 9.8 -2019-04-05
CVE-2019-6552 Advantech WebAccess/SCADA 命令操作系统命令注入漏洞 CWE-77 9.8 -2019-04-05
CVE-2018-18999 Advantech WebAccess/SCADA 缓冲区错误漏洞 CWE-20 7.6 -2018-12-19

All 25 known CVE vulnerabilities affecting WebAccess/SCADA with full Chinese analysis, references, and POCs where available.