ZDI-CAN-15355: ZDI-23-224: Omron CX-One CXP File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Omron CX-One. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-15355?
The vulnerability ZDI-CAN-15355 has a high severity due to its ability to allow remote code execution.
How do I fix ZDI-CAN-15355?
To remediate ZDI-CAN-15355, ensure that you apply the latest patches and updates provided by Omron for CX-One.
What systems are affected by ZDI-CAN-15355?
The systems affected by ZDI-CAN-15355 include installations of Omron CX-One.
What is the attack vector for ZDI-CAN-15355?
The attack vector for ZDI-CAN-15355 requires user interaction, such as visiting a malicious website or opening a harmful file.
What impact does ZDI-CAN-15355 have on users?
If exploited, ZDI-CAN-15355 allows attackers to execute arbitrary code on the affected systems, potentially leading to data loss or unauthorized access.