VDB

CVE-2022-25325

CVE-2022-25325 PUBLISHED CVSS 6.800000190734863 MEDIUM

CX-Programmer provided by OMRON Corporation contains multiple vulnerabilities listed below. * Out-of-bounds Write (CWE-787) - CVE-2022-21124 * Use After Free (CWE-416) - CVE-2022-25230 * Use After Free (CWE-416) - CVE-2022-25325 * Out-of-bounds Read (CWE-125) - CVE-2022-21219 * Out-of-bounds Write (CWE-787) - CVE-2022-25234 Michael Heinzl reported these vulnerabilities to JPCERT/CC. JPCERT/CC coordinated with the developer.

EPSS 0.51% · 66.7th percentile

Risk Scores

CVSS v2.0
6.800000190734863
EPSS Score
0.51%
66.7th percentile

Affected Products

VendorProductVersions
OMRON CorporationCX-One

Timeline

  • Mar 4, 2022 CVE Published
  • Mar 8, 2022 EPSS Score
  • Mar 15, 2022 EPSS Score
  • Apr 28, 2022 EPSS Score
  • Jun 19, 2022 EPSS Score
  • Aug 10, 2022 EPSS Score
  • Oct 1, 2022 EPSS Score
  • Nov 21, 2022 EPSS Score
  • Jan 11, 2023 EPSS Score
  • Mar 7, 2023 EPSS Score
  • Apr 24, 2023 EPSS Score
  • Jun 15, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›