Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
omron vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2022-45792
Project files may contain malicious contents which the software will use to create files on the filesystem. This allows directory traversal and overwriting files with the privileges of the logged-in user.
Omron Sysmac Studio
NA
CVE-2022-45790
The Omron FINS protocol has an authenticated feature to prevent access to memory regions. Authentication is susceptible to bruteforce attack, which may allow an adversary to gain access to protected memory. This access can allow overwrite of values including programmed logic.
Omron Cj1g-cpu45p Firmware
Omron Cj1g-cpu45p-gtc Firmware
Omron Cj1g-cpu44p Firmware
Omron Cj1g-cpu43p Firmware
Omron Cj1g-cpu42p Firmware
Omron Cp1e-e Firmware
Omron Cp1e-n Firmware
Omron Cj2h-cpu68 Firmware
Omron Cj2h-cpu67 Firmware
Omron Cj2h-cpu66 Firmware
Omron Cj2h-cpu65 Firmware
Omron Cj2h-cpu64 Firmware
Omron Cj2h-cpu68-eip Firmware
Omron Cj2h-cpu67-eip Firmware
Omron Cj2h-cpu66-eip Firmware
Omron Cj2h-cpu65-eip Firmware
Omron Cj2h-cpu64-eip Firmware
Omron Cj2m-cpu35 Firmware
Omron Cj2m-cpu34 Firmware
Omron Cj2m-cpu33 Firmware
Omron Cj2m-cpu32 Firmware
Omron Cj2m-cpu31 Firmware
NA
CVE-2022-45794
An attacker with network access to the affected PLC (CJ-series and CS-series PLCs, all versions) may use a network protocol to read and write files on the PLC internal memory and memory card.
Omron Sysmac Cj2h-cpu64-eip Firmware -
Omron Sysmac Cj2h-cpu64 Firmware -
Omron Sysmac Cj2h-cpu65-eip Firmware -
Omron Sysmac Cj2h-cpu65 Firmware -
Omron Sysmac Cj2h-cpu66-eip Firmware -
Omron Sysmac Cj2h-cpu66 Firmware -
Omron Sysmac Cj2h-cpu67-eip Firmware -
Omron Sysmac Cj2h-cpu67 Firmware -
Omron Sysmac Cj2h-cpu68-eip Firmware -
Omron Sysmac Cj2h-cpu68 Firmware -
Omron Sysmac Cj2m-cpu11 Firmware -
Omron Sysmac Cj2m-cpu12 Firmware -
Omron Sysmac Cj2m-cpu13 Firmware -
Omron Sysmac Cj2m-cpu14 Firmware -
Omron Sysmac Cj2m-cpu15 Firmware -
Omron Sysmac Cj2m-cpu31 Firmware -
Omron Sysmac Cj2m-cpu32 Firmware -
Omron Sysmac Cj2m-cpu33 Firmware -
Omron Sysmac Cj2m-cpu34 Firmware -
Omron Sysmac Cj2m-cpu35 Firmware -
Omron Sysmac Cj1g-cpu45p Firmware -
Omron Sysmac Cj1g-cpu44p Firmware -
NA
CVE-2022-45793
Sysmac Studio installs executables in a directory with poor permissions. This can allow a locally-authenticated malicious user to overwrite files which will result in code execution with privileges of a different user.
Omron Automation Software Sysmac Studio
NA
CVE-2023-22277
Use after free vulnerability exists in CX-Programmer Ver.9.79 and previous versions. By having a user open a specially crafted CXP file, information disclosure and/or arbitrary code execution may occur. This vulnerability is different from CVE-2023-22317 and CVE-2023-22314.
Omron Cx-programmer
NA
CVE-2023-22314
Use after free vulnerability exists in CX-Programmer Ver.9.79 and previous versions. By having a user open a specially crafted CXP file, information disclosure and/or arbitrary code execution may occur. This vulnerability is different from CVE-2023-22277 and CVE-2023-22317.
Omron Cx-programmer
NA
CVE-2023-22317
Use after free vulnerability exists in CX-Programmer Ver.9.79 and previous versions. By having a user open a specially crafted CXP file, information disclosure and/or arbitrary code execution may occur. This vulnerability is different from CVE-2023-22277 and CVE-2023-22314.
Omron Cx-programmer
NA
CVE-2023-38747
Heap-based buffer overflow vulnerability exists in CX-Programmer Included in CX-One CXONE-AL[][]D-V4 V9.80 and previous versions. By having a user open a specially crafted CXP file, information disclosure and/or arbitrary code execution may occur.
Omron Cx-programmer
NA
CVE-2023-38748
Use after free vulnerability exists in CX-Programmer Included in CX-One CXONE-AL[][]D-V4 V9.80 and previous versions. By having a user open a specially crafted CXP file, information disclosure and/or arbitrary code execution may occur.
Omron Cx-programmer
NA
CVE-2023-38744
Denial-of-service (DoS) vulnerability due to improper validation of specified type of input issue exists in the built-in EtherNet/IP port of the CJ Series CJ2 CPU unit and the communication function of the CS/CJ Series EtherNet/IP unit. If an affected product receives a packet wh...
Omron Cj2m-cpu35 Firmware
Omron Cj2m-cpu34 Firmware
Omron Cj2m-cpu33 Firmware
Omron Cj2m-cpu32 Firmware
Omron Cj2m-cpu31 Firmware
Omron Cj2h-cpu68-eip Firmware
Omron Cj2h-cpu67-eip Firmware
Omron Cj2h-cpu66-eip Firmware
Omron Cj2h-cpu65-eip Firmware
Omron Cj2h-cpu64-eip Firmware
Omron Cs1w-eip21 Firmware
Omron Cj1w-eip21 Firmware
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-23316
SQL injection
type confusion
CVE-2024-20697
CVE-2024-4344
local
CVE-2024-30043
CVE-2024-3821
CVE-2024-5041
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
2
3
4
5
6
7
8
9
NEXT »