Advantech WebAccess/SCADA Directory Traversal Vulnerability Allowing Arbitrary File Deletion

Vulnerability

A directory traversal vulnerability has been identified in Advantech WebAccess/SCADA. This vulnerability may allow an authenticated attacker to delete arbitrary files on the server. It affects multiple versions of the WebAccess/SCADA software, including V8.4, V9.0, V9.1, and V9.2.

Impact

Exploitation of this vulnerability could lead to unauthorized deletion of files, potentially disrupting normal operations or causing loss of important data.

Added: Dec 18, 2025, 9:29 PM
Updated: Dec 18, 2025, 9:29 PM

Vulnerability Rating

Custom Algorithm
spread
3.1
impact
2.5
exploitability
5.2
remediation
7.7
relevance
1.6
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.