Vulnerabilities > Omron > CX Supervisor > Medium

DATE CVE VULNERABILITY TITLE RISK
2018-11-05 CVE-2018-17907 Information Exposure vulnerability in Omron Cx-Supervisor
When processing project files in Omron CX-Supervisor Versions 3.4.1.0 and prior and tampering with the value of an offset, an attacker can force the application to read a value outside of an array.
network
omron CWE-200
4.3
2018-11-05 CVE-2018-17905 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Omron Cx-Supervisor
When processing project files in Omron CX-Supervisor Versions 3.4.1.0 and prior and tampering with a specific byte, memory corruption may occur within a specific object.
network
omron CWE-119
6.8
2018-03-21 CVE-2018-7525 NULL Pointer Dereference vulnerability in Omron Cx-Supervisor 3.5
In Omron CX-Supervisor Versions 3.30 and prior, processing a malformed packet by a certain executable may cause an untrusted pointer dereference vulnerability.
local
low complexity
omron CWE-476
4.6
2018-03-21 CVE-2018-7523 Double Free vulnerability in Omron Cx-Supervisor 3.5
In Omron CX-Supervisor Versions 3.30 and prior, parsing malformed project files may cause a double free vulnerability.
local
low complexity
omron CWE-415
4.6
2018-03-21 CVE-2018-7521 Use After Free vulnerability in Omron Cx-Supervisor 3.5
In Omron CX-Supervisor Versions 3.30 and prior, use after free vulnerabilities can be exploited when CX Supervisor parses a specially crafted project file.
local
low complexity
omron CWE-416
4.6
2018-03-21 CVE-2018-7519 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Omron Cx-Supervisor 3.5
In Omron CX-Supervisor Versions 3.30 and prior, parsing malformed project files may cause a heap-based buffer overflow.
local
low complexity
omron CWE-119
4.6
2018-03-21 CVE-2018-7517 Out-of-bounds Write vulnerability in Omron Cx-Supervisor 3.5
In Omron CX-Supervisor Versions 3.30 and prior, parsing malformed project files may cause an out of bounds vulnerability.
local
low complexity
omron CWE-787
4.6
2018-03-21 CVE-2018-7515 NULL Pointer Dereference vulnerability in Omron Cx-Supervisor 3.5
In Omron CX-Supervisor Versions 3.30 and prior, access of uninitialized pointer vulnerabilities can be exploited when CX Supervisor indirectly calls an initialized pointer when parsing malformed packets.
local
low complexity
omron CWE-476
4.6
2018-03-21 CVE-2018-7513 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Omron Cx-Supervisor 3.5
In Omron CX-Supervisor Versions 3.30 and prior, parsing malformed project files may cause a stack-based buffer overflow.
local
low complexity
omron CWE-119
4.6