CVE-2024-12212: Horner Automation Cscape
High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.
The vulnerability occurs in the parsing of CSP files. The issues result from the lack of proper validation of user-supplied data, which could allow reading past the end of allocated data structures, resulting in execution of arbitrary code.
Affected products
- Horner Automation Cscape: up to and including 10.0.363.1
Published 2024-12-13. Last modified 2026-06-17.