Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

MZ Automation — Vulnerabilities & Security Advisories 16

Browse all 16 CVE security advisories affecting MZ Automation. AI-powered Chinese analysis, POCs, and references for each vulnerability.

MZ Automation specializes in industrial automation and control systems, serving critical infrastructure sectors. Historically, their products have been vulnerable to remote code execution, cross-site scripting, and privilege escalation vulnerabilities, often stemming from insufficient input validation and insecure default configurations. The company has six CVEs on record, with several high-severity flaws allowing unauthorized system access or disruption of operations. While no major public incidents have been widely reported, the prevalence of RCE vulnerabilities in their products poses significant risks to industrial environments where MZ Automation systems are deployed. Their security track record reflects common challenges in industrial IoT security, emphasizing the need for robust patch management and network segmentation.

Top products by MZ Automation: libIEC61850 lib60870
CVE ID Title CVSS Severity Published
CVE-2026-19259 MZ Automation libiec61850 MMS Protocol Workflow iec61850_common.c MmsMapping_varAccessSpecToObjectReference heap-based overflow — libiec61850 CWE-122 5.3 Medium 2026-08-08
CVE-2026-19206 MZ Automation libiec61850 ASDU Element sv_subscriber.c SVReceiver_stopThreadless heap-based overflow — libiec61850 CWE-122 5.3 Medium 2026-08-07
CVE-2026-19108 MZ Automation libiec61850 URCB Revalidation reporting.c deleteDataSetValuesShadowBuffer use after free — libiec61850 CWE-416 5.3 Medium 2026-08-06
CVE-2026-61893 MZ Automation lib60870 Out-of-bounds Read — lib60870 CWE-125 6.5 Medium 2026-07-30
CVE-2026-63033 MZ Automation lib60870 Out-of-bounds Read — lib60870 CWE-125 6.5 Medium 2026-07-30
CVE-2026-16002 Out-of-bounds Read in MZ Automation lib60870 — lib60870 CWE-125 8.2 High 2026-07-23
CVE-2026-50032 NULL Pointer Dereference in MZ Automation libIEC61850 — libIEC61850 CWE-476 7.5 High 2026-07-23
CVE-2026-50103 Improper Handling of Syntactically Invalid Structure in MZ Automation libIEC61850 — libIEC61850 CWE-228 6.5 Medium 2026-07-23
CVE-2026-49035 Stack-based Buffer Overflow in MZ Automation libIEC61850 — libIEC61850 CWE-122 8.1 High 2026-07-23
CVE-2026-50039 Stack-based Buffer Overflow in MZ Automation libIEC61850 — libIEC61850 CWE-121 7.5 High 2026-07-23
CVE-2022-3976 MZ Automation libiec61850 MMS File Services mms_client_files.c path traversal — libiec61850 CWE-22 5.5 Medium 2022-11-13
CVE-2022-2970 MZ Automation libIEC61850 Stack-Based Buffer Overflow — libIEC61850 CWE-121 10.0 Critical 2022-09-23
CVE-2022-2972 MZ Automation libIEC61850 Stack-Based Buffer Overflow — libIEC61850 CWE-121 10.0 Critical 2022-09-23
CVE-2022-2971 MZ Automation libIEC61850 Access of Resource Using Incompatible Type ('Type Confusion') — libIEC61850 CWE-843 8.6 High 2022-09-23
CVE-2022-2973 MZ Automation libIEC61850 NULL Pointer Dereference — libIEC61850 CWE-476 8.6 High 2022-09-23
CVE-2022-1302 Malformed Goose Message in LibIEC61850 may result in a denial of service — libIEC61850 CWE-20 7.5 High 2022-04-12

This page lists every published CVE security advisory associated with MZ Automation. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.