PT-2021-1697 · Omron · Omron Cx-One

Rgod

·

Published

2021-01-08

·

Updated

2021-02-11

·

CVE-2020-27259

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Omron CX-One versions 4.60 and prior
Description The issue is related to the lack of pointer value validation before dereferencing, which may allow a remote attacker to execute arbitrary code by supplying a pointer to arbitrary memory locations.
Recommendations For Omron CX-One versions 4.60 and prior, update to a version later than 4.60 to resolve the issue. As a temporary workaround, consider restricting access to the system to minimize the risk of exploitation.

Fix

Untrusted Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2021-00366
CVE-2020-27259
ZDI-21-182

Affected Products

Omron Cx-One