Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-16477
HistoryJun 30, 2022 - 12:00 a.m.

Advantech iView Command Injection Vulnerability (CNVD-2023-16477)

2022-06-3000:00:00
China National Vulnerability Database
www.cnvd.org.cn
15

0.204 Low

EPSS

Percentile

96.4%

Advantech iView, a Simple Network Protocol (SNMP) based software from Advantech, China, for managing B B SmartWorx devices, is vulnerable to a command injection vulnerability in versions prior to Advantech iView 5.7.04.6469, which stems from the use of a special element in a command that is not neutralized and can be exploited by an attacker to can exploit the vulnerability to remotely execute arbitrary code.

CPENameOperatorVersion
advantech iview <5.eq7.04.6469