PT-2025-20405 · Horner Automation · Cscape

Michael Heinzl

·

Published

2025-05-08

·

Updated

2025-05-08

·

CVE-2025-4098

CVSS v4.0

8.4

High

VectorAV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Name of the Vulnerable Software and Affected Versions Horner Automation Cscape version 10.0 (10.0.415.2) SP1
Description The issue is an out-of-bounds read vulnerability that could allow an attacker to disclose information and execute arbitrary code on affected installations of Cscape.
Recommendations For Horner Automation Cscape version 10.0 (10.0.415.2) SP1, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Out of bounds Read

Weakness Enumeration

Related Identifiers

CVE-2025-4098

Affected Products

Cscape