Description
In Omron CX-Supervisor Versions 3.30 and prior, access of uninitialized pointer vulnerabilities can be exploited when CX Supervisor indirectly calls an initialized pointer when parsing malformed packets.
Scores
CVSS v3
5.3
EPSS
0.0006
EPSS Percentile
20.1%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Details
CWE
CWE-256
CWE-824
Status
published
Products (1)
omron/cx-supervisor
< 3.30
Published
Mar 21, 2018
Tracked Since
Feb 18, 2026