The BrowseFolder method in the bwocxrun ActiveX control in Advantech WebAccess before 7.2 allows remote attackers to read arbitrary files via a crafted call.Referenceshttp://ics-cert.us-cert.gov/advisories/ICSA-14-198-02