CVE-2024-27121
Published: Mar 12, 2024
Modified: Aug 16, 2024
Description
Path traversal vulnerability exists in Machine Automation Controller NJ Series and Machine Automation Controller NX Series. An arbitrary file in the affected product may be accessed or arbitrary code may be executed by processing a specially crafted request sent from a remote attacker with an administrative privilege. As for the details of the affected product names/versions, see the information provided by the vendor under [References] section.
| Vendor | Product | Versions |
|---|---|---|
OMRON Corporation | Machine Automation Controller NJ Series | affected NJ101-[][][][] Ver.1.64.03 and earlier |
OMRON Corporation | Machine Automation Controller NJ Series | affected NJ301-[][][][] Ver.1.64.00 and earlier |
OMRON Corporation | Machine Automation Controller NJ Series | affected NJ501-1[]0[] Ver.1.64.03 and earlier |
OMRON Corporation | Machine Automation Controller NJ Series | affected NJ501-1[]2[] Ver.1.64.00 and earlier |
OMRON Corporation | Machine Automation Controller NJ Series | affected NJ501-1340 Ver.1.64.00 and earlier |
OMRON Corporation | Machine Automation Controller NJ Series | affected NJ501-4[][][] Ver.1.64.00 and earlier |
OMRON Corporation | Machine Automation Controller NJ Series | affected NJ501-5300 Ver.1.64.00 and earlier |
OMRON Corporation | Machine Automation Controller NJ Series | affected NJ501-R[][][] Ver.1.64.00 and earlier |
OMRON Corporation | Machine Automation Controller NX Series | affected NX1P2-[][][][][][] Ver.1.64.00 and earlier |
OMRON Corporation | Machine Automation Controller NX Series | affected NX1P2-[][][][][][]1 Ver.1.64.00 and earlier |
OMRON Corporation | Machine Automation Controller NX Series | affected NX102-[][][][] Ver.1.64.00 and earlier |
OMRON Corporation | Machine Automation Controller NX Series | affected NX502-[][][][] Ver.1.65.01 and earlier |
OMRON Corporation | Machine Automation Controller NX Series | affected NX701-[][][][] Ver.1.35.00 and earlier |
OMRON Corporation | Machine Automation Controller NX Series | affected NX-EIP201 Ver.1.00.01 and earlier |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now