CVE-2023-38747: Omron Cx-Programmer

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

Heap-based buffer overflow vulnerability exists in CX-Programmer Included in CX-One CXONE-AL[][]D-V4 V9.80 and earlier. By having a user open a specially crafted CXP file, information disclosure and/or arbitrary code execution may occur.

Affected products

  • Omron Cx-Programmer: up to and including 9.80

Published 2023-08-03. Last modified 2026-06-17.