Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Advantech — Vulnerabilities & Security Advisories 159

Browse all 159 CVE security advisories affecting Advantech. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Advantech specializes in industrial automation, providing embedded computing hardware and IoT solutions for manufacturing and infrastructure sectors. The company’s extensive product portfolio, which includes edge gateways and panel PCs, has resulted in a significant vulnerability footprint, with 139 Common Vulnerabilities and Exposures (CVEs) currently recorded. Historical analysis reveals that these security flaws predominantly stem from Remote Code Execution (RCE) and Cross-Site Scripting (XSS) issues, often arising from unpatched web management interfaces or embedded Linux components. Additionally, several instances of privilege escalation and buffer overflow vulnerabilities have been documented, highlighting risks associated with legacy firmware and default configurations. While no single catastrophic incident has defined the brand’s public security history, the sheer volume of disclosed defects underscores persistent challenges in maintaining secure codebases across diverse industrial environments. This pattern necessitates rigorous patch management and network segmentation for organizations relying on Advantech infrastructure to mitigate potential exploitation vectors.

CVE ID Title CVSS Severity Published
CVE-2024-34542 Advantech ADAM-5630 Weak Encoding for Password — ADAM-5630 CWE-261 5.7 Medium 2024-09-27
CVE-2024-28948 Advantech ADAM-5630 Cross-Site Request Forgery — ADAM-5630 CWE-352 8.0 High 2024-09-27
CVE-2024-39275 Advantech ADAM-5630 Use of Persistent Cookies Containing Sensitive Information — ADAM-5630 CWE-539 8.0 High 2024-09-27
CVE-2024-38308 Advantech ADAM-5550 Cross-site Scripting — ADAM 5550 CWE-79 8.8 High 2024-09-27
CVE-2024-37187 Advantech ADAM-5550 Weak Encoding for Password — ADAM 5550 CWE-261 5.7 Medium 2024-09-27
CVE-2024-2453 Advantech WebAccess/SCADA SQL Injection — WebAccess/SCADA CWE-89 6.4 Medium 2024-03-21
CVE-2023-5642 Advantech R-SeeNet Unauthenticated Read/Write — R-SeeNet CWE-200 9.8 Critical 2023-10-18
CVE-2023-4215 Advantech WebAccess Debug Messages Revealing Unnecessary Information — WebAccess CWE-1295 6.5 Medium 2023-10-16
CVE-2023-4203 Stored Cross-Site Scripting — EKI-1524 CWE-79 9.0 Critical 2023-08-08
CVE-2023-4202 Stored Cross-Site Scripting — EKI-1524 CWE-79 9.0 Critical 2023-08-08
CVE-2023-1437 CVE-2023-1437 — WebAccess/SCADA CWE-822 9.8 Critical 2023-08-02
CVE-2023-2866 Advantech WebAccess Insufficient Type Distinction — WebAccess/SCADA CWE-351 7.3 High 2023-06-07
CVE-2023-22450 Advantech WebAccess/SCADA 代码问题漏洞 — WebAccess/SCADA CWE-434 7.2 High 2023-06-05
CVE-2023-32540 Advantech WebAccess/SCADA 代码注入漏洞 — WebAccess/SCADA CWE-94 7.2 High 2023-06-05
CVE-2023-32628 Advantech WebAccess/SCADA 代码问题漏洞 — WebAccess/SCADA CWE-434 7.2 High 2023-06-05
CVE-2023-2573 Authenticated Command Injection — EKI-1524 CWE-78 8.8 High 2023-05-08
CVE-2023-2574 Authenticated Command Injection — EKI-1524 CWE-78 8.8 High 2023-05-08
CVE-2023-2575 Authenticated Buffer Overflow — EKI-1524 CWE-121 8.8 High 2023-05-08
CVE-2022-3387 Advantech R-SeeNet 路径遍历漏洞 — R-SeeNet CWE-22 6.5 Medium 2022-10-27
CVE-2022-3386 Advantech R-SeeNet 缓冲区错误漏洞 — R-SeeNet CWE-121 9.8 Critical 2022-10-27
CVE-2022-3385 Advantech R-SeeNet 缓冲区错误漏洞 — R-SeeNet CWE-121 9.8 Critical 2022-10-27
CVE-2022-22987 Advantech ADAM-3600 — ADAM-3600 CWE-321 9.8 Critical 2022-02-04
CVE-2021-42703 AzeoTech DAQFactory — HMI Designer CWE-79 5.4 Medium 2021-11-15
CVE-2021-42706 AzeoTech DAQFactory — HMI Designer CWE-416 7.8 High 2021-11-15
CVE-2021-32951 Advantech WebAccess/NMS Improper Authentication — WebAccess/NMS CWE-287 5.3 Medium 2021-10-27
CVE-2021-38389 Advantech WebAccess — WebAccess CWE-121 9.8 Critical 2021-10-18
CVE-2021-33023 Advantech WebAccess — WebAccess CWE-122 9.8 Critical 2021-10-18
CVE-2021-38431 Advantech WebAccess SCADA — WebAccess SCADA CWE-862 4.3 Medium 2021-10-15
CVE-2019-3975 Advantech WebAccess/SCADA 缓冲区错误漏洞 — WebAccess/SCADA 9.8 - 2019-09-10
CVE-2019-3941 Advantech WebAccess 访问控制错误漏洞 — WebAccess 7.5 - 2019-04-09

This page lists every published CVE security advisory associated with Advantech. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.