Vulnerabilities > CVE-2018-19027 - Incorrect Type Conversion or Cast vulnerability in Omron Cx-One and Cx-Protocol

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
omron
CWE-704

Summary

Three type confusion vulnerabilities exist in CX-One Versions 4.50 and prior and CX-Protocol Versions 2.0 and prior when processing project files. An attacker could use a specially crafted project file to exploit and execute code under the privileges of the application.

Vulnerable Configurations

Part Description Count
Application
Omron
4

Common Weakness Enumeration (CWE)