Vulnerabilities > Omron

DATE CVE VULNERABILITY TITLE RISK
2014-07-24 CVE-2014-2370 Cross-Site Scripting vulnerability in Omron products
Cross-site scripting (XSS) vulnerability in the web application on Omron NS5, NS8, NS10, NS12, and NS15 HMI terminals 8.1xx through 8.68x allows remote authenticated users to inject arbitrary web script or HTML via crafted data.
network
omron CWE-79
3.5
2014-07-24 CVE-2014-2369 Cross-Site Request Forgery (CSRF) vulnerability in Omron products
Cross-site request forgery (CSRF) vulnerability in the web application on Omron NS5, NS8, NS10, NS12, and NS15 HMI terminals 8.1xx through 8.68x allows remote authenticated users to hijack the authentication of unspecified victims via unknown vectors.
network
omron CWE-352
6.0
2013-03-29 CVE-2013-2301 Permissions, Privileges, and Access Controls vulnerability in Omron Openwnn
The OMRON OpenWnn application before 1.3.6 for Android uses weak permissions for unspecified files, which allows attackers to obtain sensitive information via an application that accesses the local filesystem.
network
omron CWE-264
4.3
2000-10-20 CVE-2000-0704 Remote Buffer Overflow vulnerability in Omron WorldView Wnn Asian Language Server
Buffer overflow in SGI Omron WorldView Wnn allows remote attackers to execute arbitrary commands via long JS_OPEN, JS_MKDIR, or JS_FILE_INFO commands.
network
low complexity
freewnn omron wnn
critical
10.0