CVE-2024-22811: Tormach Pathpilot Controller

High severity, CVSS 8.2. EPSS: 0.4% chance of exploitation in the next 30 days.

An issue in Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to cause a Denial of Service (DoS) by disrupting the communication between the PathPilot controller and the CNC router via overwriting the Hostmot2 configuration cookie in the device memory.

Affected products

  • Tormach Pathpilot Controller: version 2.9.6 only

Published 2024-04-22. Last modified 2026-06-17.