Hornerautomation
Hornerautomation Cscape Envisionrv: vulnerabilidades y CVE
Hornerautomation Cscape Envisionrv tiene 11 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE11
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2023-32203 | Alta (7.8) | 0.23% | — | 6 jun 2023 | Horner Automation Cscape lacks proper validation of user-supplied data when parsing project files (e.g., HMI). This could lead to an out-of-bounds write at CScape_EnvisionRV+0x2e374b. An attacker could leverage this… |
| CVE-2023-31278 | Alta (7.8) | 0.23% | — | 6 jun 2023 | Horner Automation Cscape lacks proper validation of user-supplied data when parsing project files (e.g., HMI). This could lead to an out-of-bounds read. An attacker could leverage this vulnerability to potentially… |
| CVE-2023-31244 | Alta (7.8) | 0.23% | — | 6 jun 2023 | The affected product does not properly validate user-supplied data. If a user opens a maliciously formed CSP file, then an attacker could execute arbitrary code within the current process by accessing an uninitialized… |
| CVE-2023-29503 | Alta (7.8) | 0.23% | — | 6 jun 2023 | The affected application lacks proper validation of user-supplied data when parsing project files (e.g., CSP). This could lead to a stack-based buffer overflow. An attacker could leverage this vulnerability to execute… |
| CVE-2023-28653 | Alta (7.8) | 0.24% | — | 6 jun 2023 | The affected application lacks proper validation of user-supplied data when parsing project files (e.g., CSP). This could lead to a use-after-free vulnerability. An attacker could leverage this vulnerability to execute… |
| CVE-2023-27916 | Alta (7.8) | 0.23% | — | 6 jun 2023 | The affected application lacks proper validation of user-supplied data when parsing font files (e.g., FNT). This could lead to an out-of-bounds read. An attacker could leverage this vulnerability to potentially execute… |
| CVE-2023-32539 | Alta (7.8) | 0.23% | — | 6 jun 2023 | Horner Automation Cscape lacks proper validation of user-supplied data when parsing project files (e.g., HMI). This could lead to an out-of-bounds write at CScape_EnvisionRV+0x2e3c04. An attacker could leverage this… |
| CVE-2023-32289 | Alta (7.8) | 0.23% | — | 6 jun 2023 | The affected application lacks proper validation of user-supplied data when parsing project files (e.g.., CSP). This could lead to an out-of-bounds read in IO_CFG. An attacker could leverage this vulnerability to… |
| CVE-2023-32281 | Alta (7.8) | 0.23% | — | 6 jun 2023 | The affected application lacks proper validation of user-supplied data when parsing project files (e.g., CSP). This could lead to an out-of-bounds read in the FontManager. An attacker could leverage this vulnerability… |
| CVE-2023-32545 | Alta (7.8) | 0.23% | — | 6 jun 2023 | The affected application lacks proper validation of user-supplied data when parsing project files (e.g., CSP). This could lead to an out-of-bounds read in Cscape!CANPortMigration. An attacker could leverage this… |
| CVE-2021-44462 | Alta (7.1) | 0.71% | — | 25 mar 2022 | This vulnerability can be exploited by parsing maliciously crafted project files with Horner Automation Cscape EnvisionRV v4.50.3.1 and prior. The issues result from the lack of proper validation of user-supplied data,… |