PT-2022-4956 · Omron · Cx-Programmer

Xina1I

·

Published

2022-10-04

·

Updated

2023-03-07

·

CVE-2022-3396

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions OMRON CX-Programmer versions 9.78 and prior
Description The issue is related to an Out-of-Bounds Write, which may allow an attacker to execute arbitrary code. This vulnerability is associated with the possibility of writing beyond the buffer boundaries in memory, potentially enabling an attacker to execute arbitrary code.
Recommendations For OMRON CX-Programmer versions 9.78 and prior, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Corruption

Weakness Enumeration

Related Identifiers

BDU:2022-06150
CVE-2022-3396
ZDI-23-223

Affected Products

Cx-Programmer