CVE-2014-0765

Summary

To exploit this vulnerability, the attacker sends data from the GotoCmd argument to control. If the value of the argument is overly long, the static stack buffer can be overflowed. This will allow the attacker to execute arbitrary code remotely.

Affected Software

VendorProductVersion RangeStatus
AdvantechWebAccess0 <= 7.1affected
AdvantechWebAccess7.2unaffected

Weaknesses

  • CWE-121: CWE-121

ADP Enrichment

CVE Program Container

Additional References

References