https://ics-cert.us-cert.gov/advisories/ICSA-16-014-01
http://www.securityweek.com/advantech-failed-patch-serious-flaws-scada-product
Severity: Critical
ID: 9862
Family: SCADA
Published: 1/11/2017
Updated: 3/6/2019
Nessus ID: 89111
Risk Factor: High
Score: 7.4
Risk Factor: Critical
Base Score: 10
Temporal Score: 8.7
Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C
Risk Factor: Critical
Base Score: 9.8
Temporal Score: 9.4
Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Temporal Vector: CVSS:3.0/E:X/RL:O/RC:C
CPE: cpe:/a:advantech:advantech_webaccess
Patch Publication Date: 12/21/2015
Vulnerability Publication Date: 1/14/2016
Metasploit (windows/scada/advantech_webaccess_dashboard_file_upload.rb)
CVE: CVE-2016-0854, CVE-2016-0855, CVE-2016-0856, CVE-2016-0857, CVE-2016-0860
BID: 80745