CVE-2019-18229
CVE-2019-18229
Advantech WISE-PaaS/RMM, Versions 3.3.29 and prior. Lack of sanitization of user-supplied input cause SQL injection vulnerabilities. An attacker can leverage these vulnerabilities to disclose information.
Affected products
n/a · Advantech WISE-PaaS/RMMWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
https://www.us-cert.gov/ics/advisories/icsa-19-304-01https://www.zerodayinitiative.com/advisories/ZDI-19-937/https://www.zerodayinitiative.com/advisories/ZDI-19-938/https://www.zerodayinitiative.com/advisories/ZDI-19-940/https://www.zerodayinitiative.com/advisories/ZDI-19-948/https://www.zerodayinitiative.com/advisories/ZDI-19-949/https://www.zerodayinitiative.com/advisories/ZDI-19-951/https://www.zerodayinitiative.com/advisories/ZDI-19-952/https://www.zerodayinitiative.com/advisories/ZDI-19-955/https://www.zerodayinitiative.com/advisories/ZDI-19-956/https://www.zerodayinitiative.com/advisories/ZDI-19-957/