Vulnerabilities > Hornerautomation > Cscape > 9.90

DATE CVE VULNERABILITY TITLE RISK
2021-08-25 CVE-2021-33015 Access of Uninitialized Pointer vulnerability in Hornerautomation Cscape
Cscape (All Versions prior to 9.90 SP5) lacks proper validation of user-supplied data when parsing project files.
6.8
2021-04-23 CVE-2021-22682 Unspecified vulnerability in Hornerautomation Cscape
Cscape (All versions prior to 9.90 SP4) is configured by default to be installed for all users, which allows full permissions, including read/write access.
local
low complexity
hornerautomation
7.8
2021-04-23 CVE-2021-22678 Out-of-bounds Write vulnerability in Hornerautomation Cscape
Cscape (All versions prior to 9.90 SP4) lacks proper validation of user-supplied data when parsing project files.
local
low complexity
hornerautomation CWE-787
7.8
2019-10-18 CVE-2019-13545 Out-of-bounds Write vulnerability in Hornerautomation Cscape
In Horner Automation Cscape 9.90 and prior, improper validation of data may cause the system to write outside the intended buffer area, which may allow arbitrary code execution.
6.8
2019-10-18 CVE-2019-13541 Out-of-bounds Write vulnerability in Hornerautomation Cscape
In Horner Automation Cscape 9.90 and prior, an improper input validation vulnerability has been identified that may be exploited by processing files lacking user input validation.
6.8