Project Subscriptions
No data.
No advisories yet.
Solution
Horner Automation has released Cscape 10.2 SP3 for users to download. For more information, see the Cscape 10.2 SP3 release notes (https://hornerautomation.com/cscape-software-free/cscape-software/).
Workaround
No workaround given by the vendor.
Thu, 25 Jun 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 25 Jun 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Horner Automation Cscape versions prior to 10.2 SP3 are vulnerable to an Out-of-Bounds Read vulnerability through parsing CSP files. Successful exploitation of this vulnerability could allow an attacker to disclose information and execute arbitrary code. | |
| Title | Out-of-bounds read in Horner Automation Cscape | |
| Weaknesses | CWE-125 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2026-06-25T18:31:40.351Z
Reserved: 2026-06-22T13:32:43.685Z
Link: CVE-2026-12897
Updated: 2026-06-25T18:31:36.013Z
No data.
No data.
OpenCVE Enrichment
No data.