CVE-2024-22807: Tormach Pathpilot Controller

Medium severity, CVSS 6.5. EPSS: 0.4% chance of exploitation in the next 30 days.

An issue in Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to erase a critical sector of the flash memory, causing the machine to lose network connectivity and suffer from firmware corruption.

Affected products

  • Tormach Pathpilot Controller: version 2.9.6 only

Published 2024-04-22. Last modified 2026-06-17.