CVE-2024-27121: Omron NJ101-9020 Firmware
High severity, CVSS 7.2. EPSS: 0.9% chance of exploitation in the next 30 days.
Path traversal vulnerability exists in Machine Automation Controller NJ Series and Machine Automation Controller NX Series. An arbitrary file in the affected product may be accessed or arbitrary code may be executed by processing a specially crafted request sent from a remote attacker with an administrative privilege. As for the details of the affected product names/versions, see the information provided by the vendor under [References] section.
Affected products
- Omron NJ101-9020 Firmware: up to and including 1.64.03
- Omron NJ301-1200 Firmware: up to and including 1.64.00
- Omron NJ501-r520 Firmware: up to and including 1.64.00
- Omron Corporation Machine Automation Controller Nj Series: up to and including 1.64.03; up to and including 1.64.00
- Omron Corporation Machine Automation Controller NX Series: up to and including 1.64.00; up to and including 1.65.01; up to and including 1.35.00; up to and including 1.00.01
Published 2024-03-12. Last modified 2026-06-17.