tormach records
6 published records for vendor tormach.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-228 Improper Handling of Syntactically Invalid Structure2
- CWE-284 Improper Access Control2
- CWE-798 Use of Hard-coded Credentials1
- CWE-922 Insecure Storage of Sensitive Information1
The weakness classes this vendor ships most often: where to look.
CWEAll records
6 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
32Monitor | CVE-2024-22811No exploit | An issue in Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to cause a Denial of Service (DoS) by disrupting the comtormach · pathpilot controller · CWE-284 | High8.2 | — | 0.4% | Apr 22, 2024 |
30Monitor | CVE-2024-22808No exploit | An issue in Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to cause a Denial of Service (DoS) by disrupting the comtormach · pathpilot controller · CWE-922 | High7.5 | — | 0.5% | Apr 22, 2024 |
26Monitor | CVE-2024-22807No exploit | An issue in Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to erase a critical sector of the flash memory, causing tormach · pathpilot controller · CWE-284 | Medium6.5 | — | 0.4% | Apr 22, 2024 |
26Monitor | CVE-2024-22809No exploit | Incorrect access control in Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to access the G code's shared folder andtormach · pathpilot controller · CWE-228 | Medium6.5 | — | 0.3% | Apr 22, 2024 |
21Monitor | CVE-2024-22815No exploit | An issue in the communication protocol of Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to cause a Denial of Servitormach · pathpilot controller · CWE-228 | Medium5.3 | — | 0.2% | Apr 22, 2024 |
17Monitor | CVE-2024-22813No exploit | An issue in Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to overwrite the hardcoded IP address in the device memotormach · pathpilot controller · CWE-798 | Medium4.4 | — | 0.4% | Apr 22, 2024 |
- CVE-2024-2281132Monitor
An issue in Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to cause a Denial of Service (DoS) by disrupting the com
HighCVSS 8.2No exploitEPSS 0%tormach · pathpilot controllerApr 22, 2024
- CVE-2024-2280830Monitor
An issue in Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to cause a Denial of Service (DoS) by disrupting the com
HighCVSS 7.5No exploitEPSS 1%tormach · pathpilot controllerApr 22, 2024
- CVE-2024-2280726Monitor
An issue in Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to erase a critical sector of the flash memory, causing
MediumCVSS 6.5No exploitEPSS 0%tormach · pathpilot controllerApr 22, 2024
- CVE-2024-2280926Monitor
Incorrect access control in Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to access the G code's shared folder and
MediumCVSS 6.5No exploitEPSS 0%tormach · pathpilot controllerApr 22, 2024
- CVE-2024-2281521Monitor
An issue in the communication protocol of Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to cause a Denial of Servi
MediumCVSS 5.3No exploitEPSS 0%tormach · pathpilot controllerApr 22, 2024
- CVE-2024-2281317Monitor
An issue in Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to overwrite the hardcoded IP address in the device memo
MediumCVSS 4.4No exploitEPSS 0%tormach · pathpilot controllerApr 22, 2024