ZeroHour

CVE-2020-27257

CVSS 3.1
7.8 high
EPSS
2%p77
Published
()
Modified
Description

This vulnerability allows local attackers to execute arbitrary code due to the lack of proper validation of user-supplied data, which can result in a type-confusion condition in the Omron CX-One Version 4.60 and prior devices.

Vendors
omron
Products
cx-one, cx-position, cx-protocol, cx-server
Weakness
CWE-843
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.