CVE-2018-14818: We-Con Pi Studio

Critical severity, CVSS 9.8. EPSS: 3.5% chance of exploitation in the next 30 days.

WECON Technology Co., Ltd. PI Studio HMI versions 4.1.9 and prior and PI Studio versions 4.2.34 and prior have a stack-based buffer overflow vulnerability which may allow remote code execution.

Affected products

  • We-Con Pi Studio: up to and including 4.2.34
  • We-Con Pi Studio HMI: up to and including 4.1.9

Published 2018-10-08. Last modified 2026-06-17.