Rewterz penetration testing services help organizations determine if a cyber attacker can gain access to their critical assets while giving them detailed insights of the overall business impact of a cyber attack.
Before Rewterz got its start, the market was in dire need of a specialized and dedicated information security company. It was nearly impossible for businesses to find a trustworthy provider that could truly cover all of their bases. We wanted to meet this need, giving companies across the globe a chance to get ahead while knowing that their data is in good hands.
Rewterz penetration testing services help organizations determine if a cyber attacker can gain access to their critical assets while giving them detailed insights of the overall business impact of a cyber attack.
Before Rewterz got its start, the market was in dire need of a specialized and dedicated information security company. It was nearly impossible for businesses to find a trustworthy provider that could truly cover all of their bases. We wanted to meet this need, giving companies across the globe a chance to get ahead while knowing that their data is in good hands.
High
CVE-2023-22322 CVSS:5.5
OMRON CX-Motion Pro is vulnerable to an XML external entity injection (XXE) attack when processing XML data, caused by a weakly configured XML parser. By persuading a victim to open specially-crafted XML content, a remote attacker could exploit this vulnerability to read arbitrary files.
CVE-2023-22366 CVSS:9.8
OMRON CX-Motion-MCH could allow a remote attacker to execute arbitrary code on the system, caused by an access of uninitialized pointer vulnerability. By sending a specially-crafted request, an attacker could exploit this vulnerability to execute arbitrary code on the system.
CVE-2023-22357 CVSS:9.1
OMRON CP1L-EL20DR-D could allow a remote attacker to execute arbitrary code on the system, caused by containing active debug code. By sending a specially-crafted request, an attacker could exploit this vulnerability to execute arbitrary code on the system.
CVE-2022-46282 CVSS:7.8
OMRON CX-Drive could allow a remote attacker to execute arbitrary code on the system, caused by a use-after-free flaw. By persuading a victim to open a specially-crafted file, an attacker could exploit this vulnerability to execute arbitrary code on the system.
CVE-2022-43667 CVSS:7.8
OMRON CX-Programmer is vulnerable to a stack-based buffer overflow, caused by improper bounds checking. By persuading a victim to open a specially-crafted CXP file, a remote attacker could overflow a buffer and execute arbitrary code on the system.
CVE-2022-43509 CVSS:7.8
OMRON CX-Programmer could allow a remote attacker to execute arbitrary code on the system, caused by an out-of-bounds write. By persuading a victim to open a specially-crafted CXP file, an attacker could exploit this vulnerability to execute arbitrary code on the system.
CVE-2022-43508 CVSS:7.8
OMRON CX-Programmer could allow a remote attacker to execute arbitrary code on the system, caused by a use-after-free. By persuading a victim to open a specially-crafted CXP file, an attacker could exploit this vulnerability to execute arbitrary code on the system.
Omron
Upgrade to the latest versions, available from the OMRON Web site.