Vulnerabilities > Omron

DATE CVE VULNERABILITY TITLE RISK
2019-03-27 CVE-2018-16207 Unspecified vulnerability in Omron Poweract PRO Master Agent
PowerAct Pro Master Agent for Windows Version 5.13 and earlier allows authenticated attackers to bypass access restriction to alter or edit unauthorized files via unspecified vectors.
network
low complexity
omron
4.0
2019-02-12 CVE-2018-19020 Out-of-bounds Read vulnerability in Omron Cx-Supervisor 3.5
When CX-Supervisor (Versions 3.42 and prior) processes project files and tampers with the value of an offset, an attacker can force the application to read a value outside of an array.
network
omron CWE-125
3.5
2019-02-12 CVE-2018-19018 Access of Uninitialized Pointer vulnerability in Omron Cx-Supervisor 3.5
An access of uninitialized pointer vulnerability in CX-Supervisor (Versions 3.42 and prior) could lead to type confusion when processing project files.
network
omron CWE-824
6.0
2019-01-30 CVE-2018-19027 Incorrect Type Conversion or Cast vulnerability in Omron Cx-One and Cx-Protocol
Three type confusion vulnerabilities exist in CX-One Versions 4.50 and prior and CX-Protocol Versions 2.0 and prior when processing project files.
network
omron CWE-704
6.8
2019-01-28 CVE-2018-19015 Command Injection vulnerability in Omron Cx-Supervisor 3.5
An attacker could inject commands to launch programs and create, write, and read files on CX-Supervisor (Versions 3.42 and prior) through a specially crafted project file.
network
omron CWE-77
6.0
2019-01-22 CVE-2018-19019 Incorrect Type Conversion or Cast vulnerability in Omron Cx-Supervisor 3.5
A type confusion vulnerability exists when processing project files in CX-Supervisor (Versions 3.42 and prior).
network
omron CWE-704
6.8
2019-01-22 CVE-2018-19017 Use After Free vulnerability in Omron Cx-Supervisor 3.5
Several use after free vulnerabilities have been identified in CX-Supervisor (Versions 3.42 and prior).
network
omron CWE-416
6.8
2019-01-22 CVE-2018-19013 Command Injection vulnerability in Omron Cx-Supervisor 3.5
An attacker could inject commands to delete files and/or delete the contents of a file on CX-Supervisor (Versions 3.42 and prior) through a specially crafted project file.
network
omron CWE-77
4.9
2019-01-22 CVE-2018-19011 Code Injection vulnerability in Omron Cx-Supervisor 3.5
CX-Supervisor (Versions 3.42 and prior) can execute code that has been injected into a project file.
network
omron CWE-94
6.8
2018-12-04 CVE-2018-18993 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Omron Cx-One, Cx-Programmer and Cx-Server
Two stack-based buffer overflow vulnerabilities have been discovered in CX-One Versions 4.42 and prior (CX-Programmer Versions 9.66 and prior and CX-Server Versions 5.0.23 and prior).
network
omron CWE-119
6.8