OMRON CX-Programmer 9.70

CPE Details

OMRON CX-Programmer 9.70
9.70
2019-04-12
09h51 +00:00
2021-04-23
14h58 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:omron:cx-programmer:9.70:*:*:*:*:*:*:*

Informations

Vendor

omron

Product

cx-programmer

Version

9.70

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2023-22277 2023-08-03 13h05 +00:00 Use after free vulnerability exists in CX-Programmer Ver.9.79 and earlier. By having a user open a specially crafted CXP file, information disclosure and/or arbitrary code execution may occur. This vulnerability is different from CVE-2023-22317 and CVE-2023-22314.
7.8
High
CVE-2023-22314 2023-08-03 12h59 +00:00 Use after free vulnerability exists in CX-Programmer Ver.9.79 and earlier. By having a user open a specially crafted CXP file, information disclosure and/or arbitrary code execution may occur. This vulnerability is different from CVE-2023-22277 and CVE-2023-22317.
7.8
High
CVE-2023-22317 2023-08-03 12h56 +00:00 Use after free vulnerability exists in CX-Programmer Ver.9.79 and earlier. By having a user open a specially crafted CXP file, information disclosure and/or arbitrary code execution may occur. This vulnerability is different from CVE-2023-22277 and CVE-2023-22314.
7.8
High
CVE-2023-38748 2023-08-03 05h09 +00:00 Use after free vulnerability exists in CX-Programmer Included in CX-One CXONE-AL[][]D-V4 V9.80 and earlier. By having a user open a specially crafted CXP file, information disclosure and/or arbitrary code execution may occur.
7.8
High
CVE-2023-38747 2023-08-03 05h00 +00:00 Heap-based buffer overflow vulnerability exists in CX-Programmer Included in CX-One CXONE-AL[][]D-V4 V9.80 and earlier. By having a user open a specially crafted CXP file, information disclosure and/or arbitrary code execution may occur.
7.8
High
CVE-2023-38746 2023-08-03 04h58 +00:00 Out-of-bounds read vulnerability/issue exists in CX-Programmer Included in CX-One CXONE-AL[][]D-V4 V9.80 and earlier. By having a user open a specially crafted CXP file, information disclosure and/or arbitrary code execution may occur.
7.8
High
CVE-2022-43508 2022-12-07 00h00 +00:00 Use-after free vulnerability exists in CX-Programmer v.9.77 and earlier, which may lead to information disclosure and/or arbitrary code execution by having a user to open a specially crafted CXP file.
7.8
High
CVE-2022-43509 2022-12-07 00h00 +00:00 Out-of-bounds write vulnerability exists in CX-Programmer v.9.77 and earlier, which may lead to information disclosure and/or arbitrary code execution by having a user to open a specially crafted CXP file.
7.8
High
CVE-2022-43667 2022-12-07 00h00 +00:00 Stack-based buffer overflow vulnerability exists in CX-Programmer v.9.77 and earlier, which may lead to information disclosure and/or arbitrary code execution by having a user to open a specially crafted CXP file.
7.8
High
CVE-2022-3396 2022-10-06 16h14 +00:00 OMRON CX-Programmer 9.78 and prior is vulnerable to an Out-of-Bounds Write, which may allow an attacker to execute arbitrary code.
9.8
Critical
CVE-2022-3398 2022-10-06 16h14 +00:00 OMRON CX-Programmer 9.78 and prior is vulnerable to an Out-of-Bounds Write, which may allow an attacker to execute arbitrary code.
9.8
Critical
CVE-2022-3397 2022-10-06 16h14 +00:00 OMRON CX-Programmer 9.78 and prior is vulnerable to an Out-of-Bounds Write, which may allow an attacker to execute arbitrary code.
9.8
Critical
CVE-2022-2979 2022-09-12 19h24 +00:00 Opening a specially crafted file could cause the affected product to fail to release its memory reference potentially resulting in arbitrary code execution.
7.8
High
CVE-2022-25325 2022-03-07 08h00 +00:00 Use after free vulnerability in CX-Programmer v9.76.1 and earlier which is a part of CX-One (v4.60) suite allows an attacker to cause information disclosure and/or arbitrary code execution by having a user to open a specially crafted CXP file. This vulnerability is different from CVE-2022-25230.
7.8
High
CVE-2022-25234 2022-03-07 08h00 +00:00 Out-of-bounds write vulnerability in CX-Programmer v9.76.1 and earlier which is a part of CX-One (v4.60) suite allows an attacker to cause information disclosure and/or arbitrary code execution by having a user to open a specially crafted CXP file. This vulnerability is different from CVE-2022-21124.
7.8
High
CVE-2022-25230 2022-03-07 08h00 +00:00 Use after free vulnerability in CX-Programmer v9.76.1 and earlier which is a part of CX-One (v4.60) suite allows an attacker to cause information disclosure and/or arbitrary code execution by having a user to open a specially crafted CXP file. This vulnerability is different from CVE-2022-25325.
7.8
High
CVE-2022-21219 2022-03-07 08h00 +00:00 Out-of-bounds read vulnerability in CX-Programmer v9.76.1 and earlier which is a part of CX-One (v4.60) suite allows an attacker to cause information disclosure and/or arbitrary code execution by having a user to open a specially crafted CXP file.
7.8
High
CVE-2022-21124 2022-03-07 08h00 +00:00 Out-of-bounds write vulnerability in CX-Programmer v9.76.1 and earlier which is a part of CX-One (v4.60) suite allows an attacker to cause information disclosure and/or arbitrary code execution by having a user to open a specially crafted CXP file. This vulnerability is different from CVE-2022-25234.
7.8
High
CVE-2019-6556 2019-04-10 17h48 +00:00 When processing project files, the application (Omron CX-Programmer v9.70 and prior and Common Components January 2019 and prior) fails to check if it is referencing freed memory. An attacker could use a specially crafted project file to exploit and execute code under the privileges of the application.
6.6
Medium