Known Vulnerabilities for products from Hornerautomation
Listed below are 20 of the newest known vulnerabilities associated with the vendor "Hornerautomation".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2023-32545 json | The affected application lacks proper validation of user-supplied data when parsing project files (e.g., CSP). T... | 7.8 - HIGH | 2023-06-06 | 2023-06-12 |
| CVE-2023-32539 json | The affected application lacks proper validation of user-supplied data when parsing project files (e.g... | 7.8 - HIGH | 2023-06-06 | 2023-06-12 |
| CVE-2023-32289 json | The affected application lacks proper validation of user-supplied data when parsing project files (e.g.., CSP). Th... | 7.8 - HIGH | 2023-06-06 | 2023-06-12 |
| CVE-2023-32281 json | The affected application lacks proper validation of user-supplied data when parsing project files (e.g., CSP). This ... | 7.8 - HIGH | 2023-06-06 | 2023-06-12 |
| CVE-2023-32203 json | The affected application lacks proper validation of user-supplied data when parsing project files (e.g.,... | 7.8 - HIGH | 2023-06-06 | 2023-06-12 |
| CVE-2023-31278 json | The affected application lacks proper validation of user-supplied data when parsing project files (e... | 7.8 - HIGH | 2023-06-06 | 2023-06-12 |
| CVE-2023-31244 json | The affected product does not properly validate user-supplied data. If a user opens a maliciously formed C... | 7.8 - HIGH | 2023-06-06 | 2023-06-12 |
| CVE-2023-29503 json | The affected application lacks proper validation of user-supplied data when parsing project files (e.g., CSP). This co... | 7.8 - HIGH | 2023-06-06 | 2023-06-12 |
| CVE-2023-28653 json | The affected application lacks proper validation of user-supplied data when parsing project files (e.g., CSP... | 7.8 - HIGH | 2023-06-06 | 2023-06-12 |
| CVE-2023-27916 json | The affected application lacks proper validation of user-supplied data when parsing font files (e.g., FNT). Th... | 7.8 - HIGH | 2023-06-06 | 2023-06-12 |
| CVE-2023-7206 json | The affected application lacks proper validation of user-supplied data when parsing font files (e.g., FNT). Th... | 7.8 - HIGH | 2024-01-15 | 2024-01-23 |
| CVE-2023-0623 json | Cscape Envision RV version 4.60 is vulnerable to an out-of-bounds write vulnerability when parsing project (i.e. HMI) files. ... | 7.8 - HIGH | 2023-03-09 | 2023-11-07 |
| CVE-2023-0622 json | Cscape Envision RV version 4.60 is vulnerable to an out-of-bounds write vulnerability when parsing project (i.e. HMI) files. ... | 7.8 - HIGH | 2023-03-09 | 2023-11-07 |
| CVE-2023-0621 json | Cscape Envision RV version 4.60 is vulnerable to an out-of-bounds read vulnerability when parsing project (i.e. HMI) files. T... | 7.8 - HIGH | 2023-03-09 | 2023-11-07 |
| CVE-2022-30540 json | The affected product is vulnerable to a heap-based buffer overflow via uninitialized pointer, which may allow an attacker to ... | 7.8 - HIGH | 2022-06-02 | 2023-06-28 |
| CVE-2022-29488 json | The affected product is vulnerable to an out-of-bounds read via uninitialized pointer, which may allow an attacker to execute... | 7.8 - HIGH | 2022-06-02 | 2023-06-28 |
| CVE-2022-28690 json | The affected product is vulnerable to an out-of-bounds write via uninitialized pointer, which may allow an attacker to execut... | 7.8 - HIGH | 2022-06-02 | 2023-06-28 |
| CVE-2022-27184 json | The affected product is vulnerable to an out-of-bounds write, which may allow an attacker to execute arbitrary code. | 7.8 - HIGH | 2022-06-02 | 2022-06-09 |
| CVE-2022-3379 json | Horner Automation's Cscape version 9.90 SP7 and prior does not properly validate user-supplied data. If a user opens a malici... | 7.8 - HIGH | 2022-10-27 | 2023-11-07 |
| CVE-2022-3378 json | Horner Automation's Cscape version 9.90 SP 7 and prior does not properly validate user-supplied data. If a user opens a malic... | 7.8 - HIGH | 2022-10-27 | 2023-11-07 |
Known software with vulnerabilities from Hornerautomation
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Hornerautomation | Cscape | 9.70 |