Vulnerabilidades em Horner Automation

29 resultados
CVE-2022-30540HIGHHorner Automation Cscape CsfontEPSS 0.9%CVE-2022-29488HIGHHorner Automation Cscape CsfontEPSS 0.8%CVE-2022-28690HIGHHorner Automation Cscape CsfontEPSS 0.8%CVE-2022-27184HIGHHorner Automation Cscape CsfontEPSS 0.8%CVE-2021-44462HIGHHorner Automation Cscape EnvisionRV Improper Input ValidationEPSS 0.7%CVE-2022-2642HIGHHorner Automation’s RCC 972 firmware version 15.40 contains global variables. This could allow an attacker to read out sensitive values and EPSS 0.6%CVE-2022-2641CRITICALHorner Automation’s RCC 972 with firmware version 15.40 has a static encryption key on the device. This could allow an attacker to perform uEPSS 0.5%CVE-2026-6284CRITICALHorner Automation Cscape and XL4, XL7 PLC Weak password requirementsEPSS 0.4%CVE-2022-2640HIGHThe Config-files of Horner Automation’s RCC 972 with firmware version 15.40 are encrypted with weak XOR encryption vulnerable to reverse engEPSS 0.2%CVE-2025-4098HIGHOut-of-bounds Read in Horner Automation CscapeEPSS 0.2%CVE-2023-28653HIGH The affected application lacks proper validation of user-supplied data when parsing project files (e.g., CSP). This could lEPSS 0.2%CVE-2022-3378HIGH Horner Automation's Cscape version 9.90 SP 7 and prior does not properly validate user-supplied data. If a user opens a maliciously formed EPSS 0.2%CVE-2022-3377HIGHHorner Automation's Cscape version 9.90 SP 6 and prior does not properly validate user-supplied data. If a user opens a maliciously formed FEPSS 0.2%CVE-2023-0622HIGHCVE-2023-0622EPSS 0.2%CVE-2023-0623HIGHCVE-2023-0623EPSS 0.2%CVE-2023-0621HIGHCVE-2023-0621EPSS 0.2%CVE-2022-3379HIGH Horner Automation's Cscape version 9.90 SP7 and prior does not properly validate user-supplied data. If a user opens a maliciously formed FEPSS 0.2%CVE-2023-29503HIGH The affected application lacks proper validation of user-supplied data when parsing project files (e.g., CSP). This could lead to a sEPSS 0.2%CVE-2023-32289HIGH The affected application lacks proper validation of user-supplied data when parsing project files (e.g.., CSP). This could lead tEPSS 0.2%CVE-2023-32281HIGH The affected application lacks proper validation of user-supplied data when parsing project files (e.g., CSP). This could lead to aEPSS 0.2%