CVE-2014-2368

The BrowseFolder method in the bwocxrun ActiveX control in Advantech WebAccess before 7.2 allows remote attackers to read arbitrary files via a crafted call.

Scoring

CVSS base score
7.5
CVSS vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS probability
0.51%
CWE
CWE-623
Published
2014-07-19
Last modified
2026-03-14

Affected products

Weakness type

Related vulnerabilities

Markdown version · Browse all CVEs