Skip to main content

Vendor/product archive

omron / cx-programmer CVEs

Beta · best-effort

28 CVEs tagged to omron / cx-programmer1 Critical, 24 High, 1 Medium, 2 Low, 0 Unrated.

CVE-2023-22277

Published Aug 3, 2023

Use after free vulnerability exists in CX-Programmer Ver.9.79 and earlier. By having a user open a specially crafted CXP file, information disclosure and/or arbitrary code executi…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-22317

Published Aug 3, 2023

Use after free vulnerability exists in CX-Programmer Ver.9.79 and earlier. By having a user open a specially crafted CXP file, information disclosure and/or arbitrary code executi…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-22314

Published Aug 3, 2023

Use after free vulnerability exists in CX-Programmer Ver.9.79 and earlier. By having a user open a specially crafted CXP file, information disclosure and/or arbitrary code executi…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-38748

Published Aug 3, 2023

Use after free vulnerability exists in CX-Programmer Included in CX-One CXONE-AL[][]D-V4 V9.80 and earlier. By having a user open a specially crafted CXP file, information disclos…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-38747

Published Aug 3, 2023

Heap-based buffer overflow vulnerability exists in CX-Programmer Included in CX-One CXONE-AL[][]D-V4 V9.80 and earlier. By having a user open a specially crafted CXP file, informa…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-38746

Published Aug 3, 2023

Out-of-bounds read vulnerability/issue exists in CX-Programmer Included in CX-One CXONE-AL[][]D-V4 V9.80 and earlier. By having a user open a specially crafted CXP file, informati…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-43667

Published Dec 7, 2022

Stack-based buffer overflow vulnerability exists in CX-Programmer v.9.77 and earlier, which may lead to information disclosure and/or arbitrary code execution by having a user to…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-43509

Published Dec 7, 2022

Out-of-bounds write vulnerability exists in CX-Programmer v.9.77 and earlier, which may lead to information disclosure and/or arbitrary code execution by having a user to open a s…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-43508

Published Dec 7, 2022

Use-after free vulnerability exists in CX-Programmer v.9.77 and earlier, which may lead to information disclosure and/or arbitrary code execution by having a user to open a specia…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-3398

Published Oct 6, 2022

OMRON CX-Programmer 9.78 and prior is vulnerable to an Out-of-Bounds Write, which may allow an attacker to execute arbitrary code.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-3397

Published Oct 6, 2022

OMRON CX-Programmer 9.78 and prior is vulnerable to an Out-of-Bounds Write, which may allow an attacker to execute arbitrary code.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-3396

Published Oct 6, 2022

OMRON CX-Programmer 9.78 and prior is vulnerable to an Out-of-Bounds Write, which may allow an attacker to execute arbitrary code.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-2979

Published Sep 12, 2022

Opening a specially crafted file could cause the affected product to fail to release its memory reference potentially resulting in arbitrary code execution.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-31204

Published Jul 26, 2022

Omron CS series, CJ series, and CP series PLCs through 2022-05-18 use cleartext passwords. They feature a UM Protection setting that allows users or system integrators to configur…

CVSS 7.5 · High

CVE-2022-25325

Published Mar 10, 2022

Use after free vulnerability in CX-Programmer v9.76.1 and earlier which is a part of CX-One (v4.60) suite allows an attacker to cause information disclosure and/or arbitrary code…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-25234

Published Mar 10, 2022

Out-of-bounds write vulnerability in CX-Programmer v9.76.1 and earlier which is a part of CX-One (v4.60) suite allows an attacker to cause information disclosure and/or arbitrary…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-25230

Published Mar 10, 2022

Use after free vulnerability in CX-Programmer v9.76.1 and earlier which is a part of CX-One (v4.60) suite allows an attacker to cause information disclosure and/or arbitrary code…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-21219

Published Mar 10, 2022

Out-of-bounds read vulnerability in CX-Programmer v9.76.1 and earlier which is a part of CX-One (v4.60) suite allows an attacker to cause information disclosure and/or arbitrary c…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-21124

Published Mar 10, 2022

Out-of-bounds write vulnerability in CX-Programmer v9.76.1 and earlier which is a part of CX-One (v4.60) suite allows an attacker to cause information disclosure and/or arbitrary…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort
Showing 1-25 of 28 CVEsPage 1 of 2