Vulnerabilities (CVE)

Filtered by vendor Tormach Subscribe
Total 6 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-22807 1 Tormach 2 Pathpilot Controller, Xstech Cnc Router 2025-09-15 N/A 6.5 MEDIUM
An issue in Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to erase a critical sector of the flash memory, causing the machine to lose network connectivity and suffer from firmware corruption.
CVE-2024-22808 1 Tormach 2 Pathpilot Controller, Xstech Cnc Router 2025-09-15 N/A 7.5 HIGH
An issue in Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to cause a Denial of Service (DoS) by disrupting the communication between the PathPilot controller and the CNC router via overwriting the card's name in the device memory.
CVE-2024-22809 1 Tormach 2 Pathpilot Controller, Xstech Cnc Router 2025-09-15 N/A 6.5 MEDIUM
Incorrect access control in Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to access the G code's shared folder and view sensitive information.
CVE-2024-22811 1 Tormach 2 Pathpilot Controller, Xstech Cnc Router 2025-09-15 N/A 8.2 HIGH
An issue in Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to cause a Denial of Service (DoS) by disrupting the communication between the PathPilot controller and the CNC router via overwriting the Hostmot2 configuration cookie in the device memory.
CVE-2024-22813 1 Tormach 2 Pathpilot Controller, Xstech Cnc Router 2025-09-15 N/A 4.4 MEDIUM
An issue in Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to overwrite the hardcoded IP address in the device memory, disrupting network connectivity between the router and the controller.
CVE-2024-22815 1 Tormach 2 Pathpilot Controller, Xstech Cnc Router 2025-09-15 N/A 5.3 MEDIUM
An issue in the communication protocol of Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to cause a Denial of Service (DoS) via crafted commands.