The BrowseFolder method in the bwocxrun ActiveX control in Advantech WebAccess before 7.2 allows remote attackers to read arbitrary files via a crafted call.
Metrics
Affected Vendors & Products
References
History
Mon, 06 Oct 2025 18:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Title | Advantech WebAccess Unsafe ActiveX Control Marked Safe For Scripting | |
Weaknesses | CWE-623 | |
References |
| |
Metrics |
cvssV2_0
|
cvssV2_0
|

Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2025-10-06T17:46:06.036Z
Reserved: 2014-03-13T00:00:00
Link: CVE-2014-2368

No data.

Status : Deferred
Published: 2014-07-19T05:09:27.753
Modified: 2025-10-06T18:15:48.530
Link: CVE-2014-2368

No data.

No data.