TopVuln

High-risk vulnerability digests

CVE-2019-6550

  • CRITICAL

ics-cert@hq.dhs.gov

Details

CVSS v3
9.8
CVSS v2
7.5
NVD published
2019-04-05 19:29:00
EPSS
3.5% probability · 87.7th percentile — 2026-05-12
Affected versions
Advantech WebAccess/SCADA 8.3.5 and prior
Summary
Multiple stack-based buffer overflow vulnerabilities exist in widely used Advantech WebAccess/SCADA. The flaws are caused by insufficient validation of the length of untrusted user input. Successful exploitation allows an unauthenticated remote attacker to execute arbitrary code on the affected system.
Remediation
Apply the latest official security patch from Advantech for WebAccess/SCADA. Restrict public network access to affected SCADA systems to only trusted management IP ranges. Monitor for unauthorized activity on unpatched devices until updates are applied.
Exploit info
No public exploit found yet.

View on NVD

TopVuln sends digest emails with high-risk CVE picks across multiple authoritative sources—curated with EPSS and AI. Choose daily per-stream emails and optional weekly or monthly roundups.

Subscribe — free email digest or paid plan

Information is aggregated from multiple authoritative sources for convenience; verify with NVD and vendors before operational decisions.