Advantech WebAccess Browser based HMI SCADA ActiveX NodeName Parameter Buffer Overflow Exploit

By providing an overly long string to the NodeName parameter, an attacker may be able to overflow the static stack buffer. The attacker may then execute code on the target device remotely. This module runs a web server waiting for vulnerable clients (Internet Explorer 6, 7, 8) to connect to it.
Exploit Platform
Exploit Type
Product Name