Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
cscape vulnerabilities and exploits
(subscribe to this query)
6.8
CVSSv2
CVE-2022-27184
The affected product is vulnerable to an out-of-bounds write, which may allow an malicious user to execute arbitrary code.
Hornerautomation Cscape 9.90
Hornerautomation Cscape
6.8
CVSSv2
CVE-2018-19005
Cscape, Version 9.80.75.3 SP3 and prior. An improper input validation vulnerability has been identified that may be exploited by processing specially crafted POC files lacking user input validation. This may allow an malicious user to read confidential information and remotely ex...
Hornerautomation Cscape 9.80.75.3
Hornerautomation Cscape
6.8
CVSSv2
CVE-2019-6555
Cscape, 9.80 SP4 and prior. An improper input validation vulnerability may be exploited by processing specially crafted POC files. This may allow an malicious user to read confidential information and remotely execute arbitrary code.
Hornerautomation Cscape
Hornerautomation Cscape 9.80
6.8
CVSSv2
CVE-2022-29488
The affected product is vulnerable to an out-of-bounds read via uninitialized pointer, which may allow an malicious user to execute arbitrary code.
Hornerautomation Cscape 9.90
Hornerautomation Cscape
6.8
CVSSv2
CVE-2021-32975
Cscape (All Versions before 9.90 SP5) lacks proper validation of user-supplied data when parsing project files. This could lead to an out-of-bounds read. An attacker could leverage this vulnerability to execute code in the context of the current process.
Hornerautomation Cscape
Hornerautomation Cscape 9.90
6.8
CVSSv2
CVE-2021-33015
Cscape (All Versions before 9.90 SP5) lacks proper validation of user-supplied data when parsing project files. This could lead to an out-of-bounds write via an uninitialized pointer. An attacker could leverage this vulnerability to execute code in the context of the current proc...
Hornerautomation Cscape
Hornerautomation Cscape 9.90
NA
CVE-2023-31278
The affected application lacks proper validation of user-supplied data when parsing project files (e.g., HMI). This could lead to an out-of-bounds read. An attacker could leverage this vulnerability to potentially execute arbitrary code in the context of the current process.
Hornerautomation Cscape 9.90
Hornerautomation Cscape Envisionrv 4.70
NA
CVE-2023-32203
The affected application lacks proper validation of user-supplied data when parsing project files (e.g., HMI). This could lead to an out-of-bounds write at CScape_EnvisionRV+0x2e374b. An attacker could leverage this vulnerability to execute arbitrary code in the context of the c...
Hornerautomation Cscape 9.90
Hornerautomation Cscape Envisionrv 4.70
NA
CVE-2023-29503
The affected application lacks proper validation of user-supplied data when parsing project files (e.g., CSP). This could lead to a stack-based buffer overflow. An attacker could leverage this vulnerability to execute arbitrary code in the context of the current process.
Hornerautomation Cscape 9.90
Hornerautomation Cscape Envisionrv 4.70
NA
CVE-2023-31244
The affected product does not properly validate user-supplied data. If a user opens a maliciously formed CSP file, then an attacker could execute arbitrary code within the current process by accessing an uninitialized pointer.
Hornerautomation Cscape 9.90
Hornerautomation Cscape Envisionrv 4.70
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
blind SQL injection
SSRF
buffer overflow
CVE-2023-28952
CVE-2023-41822
CVE-2024-27956
CVE-2023-7028
CVE-2024-34447
CVE-2024-34460
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
NEXT »