This script is Copyright (C) 2017 Tenable Network Security, Inc.
The remote host is running a web application that is affected by an
authentication bypass vulnerability.
The Advantech WebAccess web server running on the remote host is
affected by an authentication bypass vulnerability in the WaExlViewer
component due to a failure to properly manage authentication. An
unauthenticated, remote attacker can exploit this, via a POST request
with specially crafted parameters, to bypass intended restrictions,
allowing the attacker to access restricted pages, upload template
files, and delete existing templates.
See also :
Contact the vendor for a solution.
Risk factor :
High / CVSS Base Score : 7.5