High severity7.8NVD Advisory· Published Jan 15, 2024· Updated Jun 17, 2026
CVE-2023-7206
CVE-2023-7206
Description
In Horner Automation Cscape versions 9.90 SP10 and prior, local attackers are able to exploit this vulnerability if a user opens a malicious CSP file, which would result in execution of arbitrary code on affected installations of Cscape.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
15cpe:2.3:a:hornerautomation:cscape:*:*:*:*:*:*:*:*+ 14 more
- cpe:2.3:a:hornerautomation:cscape:*:*:*:*:*:*:*:*range: <9.90
- cpe:2.3:a:hornerautomation:cscape:9.90:-:*:*:*:*:*:*
- cpe:2.3:a:hornerautomation:cscape:9.90:sp10:*:*:*:*:*:*
- cpe:2.3:a:hornerautomation:cscape:9.90:sp1:*:*:*:*:*:*
- cpe:2.3:a:hornerautomation:cscape:9.90:sp2:*:*:*:*:*:*
- cpe:2.3:a:hornerautomation:cscape:9.90:sp3:*:*:*:*:*:*
- cpe:2.3:a:hornerautomation:cscape:9.90:sp4:*:*:*:*:*:*
- cpe:2.3:a:hornerautomation:cscape:9.90:sp5:*:*:*:*:*:*
- cpe:2.3:a:hornerautomation:cscape:9.90:sp6:*:*:*:*:*:*
- cpe:2.3:a:hornerautomation:cscape:9.90:sp7.1:*:*:*:*:*:*
- cpe:2.3:a:hornerautomation:cscape:9.90:sp7:*:*:*:*:*:*
- cpe:2.3:a:hornerautomation:cscape:9.90:sp8:*:*:*:*:*:*
- cpe:2.3:a:hornerautomation:cscape:9.90:sp9:*:*:*:*:*:*
- (no CPE)range: <=9.90 SP10
- (no CPE)range: 0
Patches
Vulnerability mechanics
References
2- www.cisa.gov/news-events/ics-advisories/icsa-24-011-04nvdThird Party AdvisoryUS Government Resource
- hornerautomation.com/cscape-software/nvdProduct
News mentions
0No linked articles in our index yet.