As cited
Copy frozen at (site build).
vulnerabilities
Horner Automation Cscape
Horner Automation Cscape versions prior to 10.2 SP3 contain an out-of-bounds read vulnerability (CVE-2026-12897) that could allow local attackers to disclose information and execute arbitrary code through parsing CSP files. The vendor has released Cscape 10.2 SP3 as a patch. No known public exploitation has been reported.
Why it matters: Affects industrial control systems in critical manufacturing environments worldwide; requires immediate patching of vulnerable Cscape versions to prevent local code execution.
- Source published
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
vulnerabilities
Horner Automation Cscape
Horner Automation Cscape versions prior to 10.2 SP3 contain an out-of-bounds read vulnerability (CVE-2026-12897) that could allow local attackers to disclose information and execute arbitrary code through parsing CSP files. The vendor has released Cscape 10.2 SP3 as a patch. No known public exploitation has been reported.
Why it matters: Affects industrial control systems in critical manufacturing environments worldwide; requires immediate patching of vulnerable Cscape versions to prevent local code execution.
- Source published
- First seen by Cybersecurity Tracker