Vulnerabilities > Omron > CX ONE > 4.50

DATE CVE VULNERABILITY TITLE RISK
2022-01-14 CVE-2022-21137 Out-of-bounds Write vulnerability in Omron Cx-One 4.42/4.50/4.60
Omron CX-One Versions 4.60 and prior are vulnerable to a stack-based buffer overflow while processing specific project files, which may allow an attacker to execute arbitrary code.
local
low complexity
omron CWE-787
7.8
2021-05-13 CVE-2021-27413 Out-of-bounds Write vulnerability in Omron Cx-One and Cx-Server
Omron CX-One Versions 4.60 and prior, including CX-Server Versions 5.0.29.0 and prior, are vulnerable to a stack-based buffer overflow, which may allow an attacker to execute arbitrary code.
local
low complexity
omron CWE-787
7.8
2021-02-09 CVE-2020-27261 Out-of-bounds Write vulnerability in Omron products
The Omron CX-One Version 4.60 and prior is vulnerable to a stack-based buffer overflow, which may allow an attacker to remotely execute arbitrary code.
network
low complexity
omron CWE-787
8.8
2021-02-09 CVE-2020-27259 Unspecified vulnerability in Omron products
The Omron CX-One Version 4.60 and prior may allow an attacker to supply a pointer to arbitrary memory locations, which may allow an attacker to remotely execute arbitrary code.
network
low complexity
omron
8.8
2021-02-09 CVE-2020-27257 Type Confusion vulnerability in Omron products
This vulnerability allows local attackers to execute arbitrary code due to the lack of proper validation of user-supplied data, which can result in a type-confusion condition in the Omron CX-One Version 4.60 and prior devices.
local
low complexity
omron CWE-843
7.8
2019-01-30 CVE-2018-19027 Incorrect Type Conversion or Cast vulnerability in Omron Cx-One and Cx-Protocol
Three type confusion vulnerabilities exist in CX-One Versions 4.50 and prior and CX-Protocol Versions 2.0 and prior when processing project files.
local
low complexity
omron CWE-704
7.8