CVE Tools

Hornerautomation

25 CVEs tracked since 2019. Since Oct 2019, none of them reached CISA KEV.

Hornerautomation CVEs per month

Oct 2019 to Jun 2023. Point at a month, or focus the strip and use the arrow keys.
Hornerautomation CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2019-1020
2019-11null or fewer
2019-12null or fewer
2020-01null or fewer
2020-02null or fewer
2020-03null or fewer
2020-04null or fewer
2020-05null or fewer
2020-06null or fewer
2020-07null or fewer
2020-08null or fewer
2020-09null or fewer
2020-10null or fewer
2020-11null or fewer
2020-12null or fewer
2021-01null or fewer
2021-02null or fewer
2021-03null or fewer
2021-04null or fewer
2021-05null or fewer
2021-06null or fewer
2021-07null or fewer
2021-0830
2021-09null or fewer
2021-10null or fewer
2021-11null or fewer
2021-12null or fewer
2022-01null or fewer
2022-02null or fewer
2022-03null or fewer
2022-04null or fewer
2022-05null or fewer
2022-0640
2022-07null or fewer
2022-08null or fewer
2022-09null or fewer
2022-1030
2022-11null or fewer
2022-1230
2023-01null or fewer
2023-02null or fewer
2023-03null or fewer
2023-04null or fewer
2023-05null or fewer
2023-06100

Products

The products that kept showing up in Hornerautomation's monthly top three, with their CVEs summed over those months.

  1. Cscape225 months
  2. Cscape Envisionrv101 month
  3. RCC972 Firmware31 month

Latest CVEs

The 15 most recently published vulnerabilities affecting Hornerautomation.

  1. CVE-2023-7206Horner Automation Cscape Stack-Based Buffer Overflow7.8
  2. CVE-2023-28653 The affected application lacks proper validation of user-supplied data when parsing project files (e.g., CSP). This could lead to a use-after-free vulnerability. An attacker could ...7.8
  3. CVE-2023-27916 The affected application lacks proper validation of user-supplied data when parsing font files (e.g., FNT). This could lead to an out-of-bounds read. An attacker could leverage this ...7.8
  4. CVE-2023-29503 The affected application lacks proper validation of user-supplied data when parsing project files (e.g., CSP). This could lead to a stack-based buffer overflow. An attacker could leverage th...7.8
  5. CVE-2023-31244 The affected product does not properly validate user-supplied data. If a user opens a maliciously formed CSP file, then an attacker could execute arbitrary code within the curren...7.8
  6. CVE-2023-31278Horner Automation Cscape Out-of-bounds Read7.8
  7. CVE-2023-32203Horner Automation Cscape Out-of-bounds Write7.8
  8. CVE-2023-32281 The affected application lacks proper validation of user-supplied data when parsing project files (e.g., CSP). This could lead to an out-of-bounds read in the FontManager. An attacker coul...7.8
  9. CVE-2023-32289 The affected application lacks proper validation of user-supplied data when parsing project files (e.g.., CSP). This could lead to an out-of-bounds read in IO_CFG. An attacker could leve...7.8
  10. CVE-2023-32539Horner Automation Cscape Out-of-bounds Write7.8
  11. CVE-2023-32545 The affected application lacks proper validation of user-supplied data when parsing project files (e.g., CSP). This could lead to an out-of-bounds read in Cscape!CANPortMigration. An a...7.8
  12. CVE-2023-0621CVE-2023-06217.8
  13. CVE-2023-0623CVE-2023-06237.8
  14. CVE-2023-0622CVE-2023-06227.8
  15. CVE-2022-2642Horner Automation’s RCC 972 firmware version 15.40 contains global variables. This could allow an attacker to read out sensitive values and variable keys from the device.7.5

The record

Peak rank
#67 in Jun 2023
Busiest month shown
Jun 2023, 10 CVEs
Months with a KEV entry
0 since Oct 2019
Monthly snapshots
6 since 2019
Hornerautomation's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store