Description
An issue in Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to overwrite the hardcoded IP address in the device memory, disrupting network connectivity between the router and the controller.
Published: 2024-04-22
Score: 4.4 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 26 Feb 2026 19:15:00 +0000

Type Values Removed Values Added
First Time appeared Tormach pilotpath Controller
CPEs cpe:2.3:a:tormach:pilotpath_controller:2.9.6:*:*:*:*:*:*:*
Vendors & Products Tormach pilotpath Controller
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 15 Sep 2025 16:30:00 +0000

Type Values Removed Values Added
First Time appeared Tormach
Tormach pathpilot Controller
Tormach xstech Cnc Router
CPEs cpe:2.3:a:tormach:pathpilot_controller:2.9.6:*:*:*:*:*:*:*
cpe:2.3:h:tormach:xstech_cnc_router:-:*:*:*:*:*:*:*
Vendors & Products Tormach
Tormach pathpilot Controller
Tormach xstech Cnc Router

Subscriptions

Tormach Pathpilot Controller Pilotpath Controller Xstech Cnc Router
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-01T22:51:11.142Z

Reserved: 2024-01-11T00:00:00.000Z

Link: CVE-2024-22813

cve-icon Vulnrichment

Updated: 2024-08-01T22:51:11.142Z

cve-icon NVD

Status : Analyzed

Published: 2024-04-22T12:15:07.497

Modified: 2025-09-15T16:18:43.273

Link: CVE-2024-22813

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses