Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

MZ Automation — Vulnerabilities & Security Advisories 16

Browse all 16 CVE security advisories affecting MZ Automation. AI-powered Chinese analysis, POCs, and references for each vulnerability.

MZ Automation specializes in industrial automation and control systems, serving critical infrastructure sectors. Historically, their products have been vulnerable to remote code execution, cross-site scripting, and privilege escalation vulnerabilities, often stemming from insufficient input validation and insecure default configurations. The company has six CVEs on record, with several high-severity flaws allowing unauthorized system access or disruption of operations. While no major public incidents have been widely reported, the prevalence of RCE vulnerabilities in their products poses significant risks to industrial environments where MZ Automation systems are deployed. Their security track record reflects common challenges in industrial IoT security, emphasizing the need for robust patch management and network segmentation.

Top products by MZ Automation: libIEC61850 lib60870
CVE IDTitleCVSSSeverityPublished
CVE-2026-19259 MZ Automation libiec61850 MMS Protocol Workflow iec61850_common.c MmsMapping_varAccessSpecToObjectReference heap-based overflow — libiec61850CWE-122 5.3 Medium2026-08-08
CVE-2026-19206 MZ Automation libiec61850 ASDU Element sv_subscriber.c SVReceiver_stopThreadless heap-based overflow — libiec61850CWE-122 5.3 Medium2026-08-07
CVE-2026-19108 MZ Automation libiec61850 URCB Revalidation reporting.c deleteDataSetValuesShadowBuffer use after free — libiec61850CWE-416 5.3 Medium2026-08-06
CVE-2026-61893 MZ Automation lib60870 Out-of-bounds Read — lib60870CWE-125 6.5 Medium2026-07-30
CVE-2026-63033 MZ Automation lib60870 Out-of-bounds Read — lib60870CWE-125 6.5 Medium2026-07-30
CVE-2026-16002 Out-of-bounds Read in MZ Automation lib60870 — lib60870CWE-125 8.2 High2026-07-23
CVE-2026-50032 NULL Pointer Dereference in MZ Automation libIEC61850 — libIEC61850CWE-476 7.5 High2026-07-23
CVE-2026-50103 Improper Handling of Syntactically Invalid Structure in MZ Automation libIEC61850 — libIEC61850CWE-228 6.5 Medium2026-07-23
CVE-2026-49035 Stack-based Buffer Overflow in MZ Automation libIEC61850 — libIEC61850CWE-122 8.1 High2026-07-23
CVE-2026-50039 Stack-based Buffer Overflow in MZ Automation libIEC61850 — libIEC61850CWE-121 7.5 High2026-07-23
CVE-2022-3976 MZ Automation libiec61850 MMS File Services mms_client_files.c path traversal — libiec61850CWE-22 5.5 Medium2022-11-13
CVE-2022-2970 MZ Automation libIEC61850 Stack-Based Buffer Overflow — libIEC61850CWE-121 10.0 Critical2022-09-23
CVE-2022-2972 MZ Automation libIEC61850 Stack-Based Buffer Overflow — libIEC61850CWE-121 10.0 Critical2022-09-23
CVE-2022-2971 MZ Automation libIEC61850 Access of Resource Using Incompatible Type ('Type Confusion') — libIEC61850CWE-843 8.6 High2022-09-23
CVE-2022-2973 MZ Automation libIEC61850 NULL Pointer Dereference — libIEC61850CWE-476 8.6 High2022-09-23
CVE-2022-1302 Malformed Goose Message in LibIEC61850 may result in a denial of service — libIEC61850CWE-20 7.5 High2022-04-12

This page lists every published CVE security advisory associated with MZ Automation. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.