Hornerautomation
25 CVEs tracked since 2019. Since Oct 2019, none of them reached CISA KEV.
Hornerautomation CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2019-10 | 2 | 0 |
| 2019-11 | null or fewer | |
| 2019-12 | null or fewer | |
| 2020-01 | null or fewer | |
| 2020-02 | null or fewer | |
| 2020-03 | null or fewer | |
| 2020-04 | null or fewer | |
| 2020-05 | null or fewer | |
| 2020-06 | null or fewer | |
| 2020-07 | null or fewer | |
| 2020-08 | null or fewer | |
| 2020-09 | null or fewer | |
| 2020-10 | null or fewer | |
| 2020-11 | null or fewer | |
| 2020-12 | null or fewer | |
| 2021-01 | null or fewer | |
| 2021-02 | null or fewer | |
| 2021-03 | null or fewer | |
| 2021-04 | null or fewer | |
| 2021-05 | null or fewer | |
| 2021-06 | null or fewer | |
| 2021-07 | null or fewer | |
| 2021-08 | 3 | 0 |
| 2021-09 | null or fewer | |
| 2021-10 | null or fewer | |
| 2021-11 | null or fewer | |
| 2021-12 | null or fewer | |
| 2022-01 | null or fewer | |
| 2022-02 | null or fewer | |
| 2022-03 | null or fewer | |
| 2022-04 | null or fewer | |
| 2022-05 | null or fewer | |
| 2022-06 | 4 | 0 |
| 2022-07 | null or fewer | |
| 2022-08 | null or fewer | |
| 2022-09 | null or fewer | |
| 2022-10 | 3 | 0 |
| 2022-11 | null or fewer | |
| 2022-12 | 3 | 0 |
| 2023-01 | null or fewer | |
| 2023-02 | null or fewer | |
| 2023-03 | null or fewer | |
| 2023-04 | null or fewer | |
| 2023-05 | null or fewer | |
| 2023-06 | 10 | 0 |
Products
The products that kept showing up in Hornerautomation's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 15 most recently published vulnerabilities affecting Hornerautomation.
- CVE-2023-7206Horner Automation Cscape Stack-Based Buffer Overflow7.8
- CVE-2023-28653 The affected application lacks proper validation of user-supplied data when parsing project files (e.g., CSP). This could lead to a use-after-free vulnerability. An attacker could ...7.8
- CVE-2023-27916 The affected application lacks proper validation of user-supplied data when parsing font files (e.g., FNT). This could lead to an out-of-bounds read. An attacker could leverage this ...7.8
- CVE-2023-29503 The affected application lacks proper validation of user-supplied data when parsing project files (e.g., CSP). This could lead to a stack-based buffer overflow. An attacker could leverage th...7.8
- CVE-2023-31244 The affected product does not properly validate user-supplied data. If a user opens a maliciously formed CSP file, then an attacker could execute arbitrary code within the curren...7.8
- CVE-2023-31278Horner Automation Cscape Out-of-bounds Read7.8
- CVE-2023-32203Horner Automation Cscape Out-of-bounds Write7.8
- CVE-2023-32281 The affected application lacks proper validation of user-supplied data when parsing project files (e.g., CSP). This could lead to an out-of-bounds read in the FontManager. An attacker coul...7.8
- CVE-2023-32289 The affected application lacks proper validation of user-supplied data when parsing project files (e.g.., CSP). This could lead to an out-of-bounds read in IO_CFG. An attacker could leve...7.8
- CVE-2023-32539Horner Automation Cscape Out-of-bounds Write7.8
- CVE-2023-32545 The affected application lacks proper validation of user-supplied data when parsing project files (e.g., CSP). This could lead to an out-of-bounds read in Cscape!CANPortMigration. An a...7.8
- CVE-2023-0621CVE-2023-06217.8
- CVE-2023-0623CVE-2023-06237.8
- CVE-2023-0622CVE-2023-06227.8
- CVE-2022-2642Horner Automation’s RCC 972 firmware version 15.40 contains global variables. This could allow an attacker to read out sensitive values and variable keys from the device.7.5
The record
- Peak rank
- #67 in Jun 2023
- Busiest month shown
- Jun 2023, 10 CVEs
- Months with a KEV entry
- 0 since Oct 2019
- Monthly snapshots
- 6 since 2019