CVE-2012-0241 describes a denial-of-service vulnerability in Advantech/BroadWin WebAccess versions prior to 7.0, where a remote attacker can cause memory corruption by sending a modified stream identifier to a specific function. With a CVSS score of 5.0, this vulnerability is considered medium severity, requiring no authentication and having low attack complexity, though its direct impact is limited to availability. While the KEV catalog does not list active exploitation, public exploit code exists on ExploitDB, including a remote code execution exploit, despite minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 6.0CPE matchmatch criteria | cpe:2.3:a:advantech:advantech_webaccess:*:*:*:*:*:*:*:* | ||
5.0CPE matchmatch criteria | cpe:2.3:a:advantech:advantech_webaccess:5.0:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:N/I:N/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.