VYPR
High severity7.8NVD Advisory· Published Feb 9, 2021· Updated Jun 17, 2026

CVE-2020-27257

CVE-2020-27257

Description

This vulnerability allows local attackers to execute arbitrary code due to the lack of proper validation of user-supplied data, which can result in a type-confusion condition in the Omron CX-One Version 4.60 and prior devices.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

9
  • Omron/CX-One3 versions
    cpe:2.3:a:omron:cx-one:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:omron:cx-one:*:*:*:*:*:*:*:*range: <=4.60
    • (no CPE)range: <=4.60
    • (no CPE)range: unspecified
  • Omron/CX-Position2 versions
    cpe:2.3:a:omron:cx-position:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:omron:cx-position:*:*:*:*:*:*:*:*range: <=2.52
    • (no CPE)range: unspecified
  • Omron/CX-Protocol2 versions
    cpe:2.3:a:omron:cx-protocol:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:omron:cx-protocol:*:*:*:*:*:*:*:*range: <=2.02
    • (no CPE)range: unspecified
  • Omron/CX-Server2 versions
    cpe:2.3:a:omron:cx-server:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:omron:cx-server:*:*:*:*:*:*:*:*range: <=5.0.28
    • (no CPE)range: unspecified

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.