Перейти к содержимому
Noroxi

Записи Omron

91 опубликованных записей вендора omron.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
9
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

91 записей
  • CVE-2000-0704
    44В плане

    Buffer overflow in SGI Omron WorldView Wnn allows remote attackers to execute arbitrary commands via long JS_OPEN, JS_MKDIR, or JS_FILE_INFO

    КритическаяCVSS 10,0Proof of conceptEPSS 13 %

    omron · worldview20 окт. 2000 г.

  • CVE-2019-18259
    40В плане

    In Omron PLC CJ series, all versions and Omron PLC CS series, all versions, an attacker could spoof arbitrary messages or execute commands.

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    omron · plc cj firmware16 дек. 2019 г.

  • CVE-2015-0987
    40В плане

    Omron CX-One CX-Programmer before 9.6, CJ2M PLC devices before 2.1, and CJ2H PLC devices before 1.5 rely on cleartext password transmission,

    КритическаяCVSS 10,0Эксплойта нетEPSS 1 %

    omron · cx-programmer5 окт. 2015 г.

  • CVE-2018-6624
    39Наблюдать

    OMRON NS devices 1.1 through 1.3 allow remote attackers to bypass authentication via a direct request to the .html file for a specific scree

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    omron · ns series firmware5 февр. 2018 г.

  • CVE-2023-27396
    39Наблюдать

    FINS (Factory Interface Network Service) is a message communication protocol, which is designed to be used in closed FA (Factory Automation)

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    omron · cs1w-eip21 firmware19 июн. 2023 г.

  • CVE-2019-18261
    39Наблюдать

    In Omron PLC CS series, all versions, Omron PLC CJ series, all versions, and Omron PLC NJ series, all versions, the software does not implem

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    omron · plc cj firmware16 дек. 2019 г.

  • CVE-2023-22357
    39Наблюдать

    Active debug code exists in OMRON CP1L-EL20DR-D all versions, which may lead to a command that is not specified in FINS protocol being execu

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    omron · cp1l-el20dr-d firmware17 янв. 2023 г.

  • CVE-2022-31206
    39Наблюдать

    The Omron SYSMAC Nx product family PLCs (NJ series, NY series, NX series, and PMAC series) through 2022-005-18 lack cryptographic authentica

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    omron · nx701-1600 firmware26 июл. 2022 г.

  • CVE-2019-18269
    39Наблюдать

    Omron’s CS and CJ series PLCs have an unrestricted externally accessible lock vulnerability.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    omron · plc cj firmware16 дек. 2019 г.

  • CVE-2022-31207
    39Наблюдать

    The Omron SYSMAC Cx product family PLCs (CS series, CJ series, and CP series) through 2022-05-18 lack cryptographic authentication.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    omron · sysmac cs1 firmware26 июл. 2022 г.

  • CVE-2022-3396
    39Наблюдать

    OMRON CX-Programmer Out-of-bounds Write

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    omron · cx-programmer6 окт. 2022 г.

  • CVE-2022-3398
    39Наблюдать

    OMRON CX-Programmer Out-of-bounds Write

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    omron · cx-programmer6 окт. 2022 г.

  • CVE-2022-3397
    39Наблюдать

    OMRON CX-Programmer Out-of-bounds Write

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    omron · cx-programmer6 окт. 2022 г.

  • CVE-2020-27261
    37Наблюдать

    The Omron CX-One Version 4.60 and prior is vulnerable to a stack-based buffer overflow, which may allow an attacker to remotely execute arbi

    ВысокаяCVSS 8,8Эксплойта нетEPSS 8 %

    omron · cx-one9 февр. 2021 г.

  • CVE-2020-27259
    36Наблюдать

    The Omron CX-One Version 4.60 and prior may allow an attacker to supply a pointer to arbitrary memory locations, which may allow an attacker

    ВысокаяCVSS 8,8Эксплойта нетEPSS 3 %

    omron · cx-one9 февр. 2021 г.

  • CVE-2018-19011
    36Наблюдать

    CX-Supervisor (Versions 3.42 and prior) can execute code that has been injected into a project file.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %

    omron · cx-supervisor22 янв. 2019 г.

  • CVE-2018-19017
    36Наблюдать

    Several use after free vulnerabilities have been identified in CX-Supervisor (Versions 3.42 and prior).

    ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %

    omron · cx-supervisor22 янв. 2019 г.

  • CVE-2019-18251
    36Наблюдать

    In Omron CX-Supervisor, Versions 3.5 (12) and prior, Omron CX-Supervisor ships with Teamviewer Version 5.0.8703 QS.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %

    omron · cx-supervisor25 нояб. 2019 г.

  • CVE-2022-45790
    36Наблюдать

    Omron FINS memory protection susceptible to bruteforce

    КритическаяCVSS 9,1Эксплойта нетEPSS 1 %

    omron · cj1g-cpu45p firmware22 янв. 2024 г.

  • CVE-2023-0811
    36Наблюдать

    Omron CJ1M unit v4.0 and prior has improper access controls on the memory region where the UM password is stored.

    КритическаяCVSS 9,1Эксплойта нетEPSS 1 %

    omron · sysmac cj2h-cpu64 firmware16 мар. 2023 г.

  • CVE-2021-27413
    34Наблюдать

    Omron CX-One Versions 4.60 and prior, including CX-Server Versions 5.0.29.0 and prior, are vulnerable to a stack-based buffer overflow, whic

    ВысокаяCVSS 7,8Эксплойта нетEPSS 10 %

    omron · cx-one13 мая 2021 г.

  • CVE-2022-21137
    34Наблюдать

    Omron CX-One Versions 4.60 and prior are vulnerable to a stack-based buffer overflow while processing specific project files, which may allo

    ВысокаяCVSS 7,8Эксплойта нетEPSS 9 %

    omron · cx-one14 янв. 2022 г.

  • CVE-2022-33208
    33Наблюдать

    Authentication bypass by capture-replay vulnerability exists in Machine automation controller NJ series all models V 1.48 and earlier, Machi

    ВысокаяCVSS 8,1Эксплойта нетEPSS 2 %

    omron · nx701-1600 firmware3 июл. 2022 г.

  • CVE-2022-26419
    32Наблюдать

    Rockwell Automation Studio 5000 Logix Designer Code Injection

    ВысокаяCVSS 7,8Эксплойта нетEPSS 2 %

    omron · cx-position1 апр. 2022 г.

  • CVE-2020-27257
    32Наблюдать

    This vulnerability allows local attackers to execute arbitrary code due to the lack of proper validation of user-supplied data, which can re

    ВысокаяCVSS 7,8Эксплойта нетEPSS 2 %

    omron · cx-one9 февр. 2021 г.