High severity7.8NVD Advisory· Published Apr 17, 2018· Updated Jun 17, 2026
CVE-2018-8834
CVE-2018-8834
Description
Parsing malformed project files in Omron CX-One versions 4.42 and prior, including the following applications: CX-FLnet versions 1.00 and prior, CX-Protocol versions 1.992 and prior, CX-Programmer versions 9.65 and prior, CX-Server versions 5.0.22 and prior, Network Configurator versions 3.63 and prior, and Switch Box Utility versions 1.68 and prior, may cause a heap-based buffer overflow.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
9- ICS-CERT/Omron CX-Onev5Range: The following versions of CX-One are affected: CX-One Versions 4.42 and prior, including the following applications: CX-FLnet versions 1.00 and prior, CX-Protocol versions 1.992 and prior, CX-Programmer versions 9.65 and prior, CX-Server versions 5.0.22 and prior, Network Configurator versions 3.63 and prior, and Switch Box Utility versions 1.68 and prior.
<=4.42; CX-FLnet <=1.00; CX-Protocol <=1.992; CX-Programmer <=9.65; CX-Server <=5.0.22; Network Configurator <=3.63; Switch Box Utility <=1.68+ 1 more
- (no CPE)range: <=4.42; CX-FLnet <=1.00; CX-Protocol <=1.992; CX-Programmer <=9.65; CX-Server <=5.0.22; Network Configurator <=3.63; Switch Box Utility <=1.68
- cpe:2.3:a:omron:cx-one:*:*:*:*:*:*:*:*range: <=4.42
Patches
Vulnerability mechanics
References
1- ics-cert.us-cert.gov/advisories/ICSA-18-100-02nvdThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.