Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Horner Automation has released Cscape 10.2 SP3 for users to download. For more information, see the Cscape 10.2 SP3 release notes (https://hornerautomation.com/cscape-software-free/cscape-software/).
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 25 Jun 2026 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hornerautomation
Hornerautomation cscape |
|
| Vendors & Products |
Hornerautomation
Hornerautomation cscape |
Thu, 25 Jun 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 25 Jun 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Horner Automation Cscape versions prior to 10.2 SP3 are vulnerable to an Out-of-Bounds Read vulnerability through parsing CSP files. Successful exploitation of this vulnerability could allow an attacker to disclose information and execute arbitrary code. | |
| Title | Out-of-bounds read in Horner Automation Cscape | |
| Weaknesses | CWE-125 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2026-06-25T18:31:40.351Z
Reserved: 2026-06-22T13:32:43.685Z
Link: CVE-2026-12897
Updated: 2026-06-25T18:31:36.013Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-06-25T21:15:05Z