Fujielectric manufactures industrial automation and control systems, including human-machine interfaces, servers, and monitoring platforms deployed across manufacturing and critical infrastructure environments. Although the vendor's portfolio remains modest in breadth, its prominence in the vulnerability landscape reflects the mission-critical role these products play in operational technology. Vulnerabilities affecting Fujielectric skew toward serious outcomes, with an elevated tendency toward critical severity, and cluster consistently around memory-safety weaknesses including out-of-bounds reads and writes, stack and heap buffer overflows, and improper memory-bounds restrictions—flaws endemic to embedded and native-code control systems. The exposure recurs across product lines such as Monitouch, V-Server, and Tellus, where these memory-safety classes represent a durable attack surface in firmware and real-time execution environments. Defenders managing industrial networks should inventory affected products and apply vendor firmware updates strategically; live severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Fujielectric over time
Signals from CVEs in this vendor scope (133 CVEs).
133 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-18240CRITICAL In Fuji Electric V-Server 4.0.6 and prior, several heap-based buffer overflows have been identified, which may allow an attacker to remotely execute arbitrary code. | Nov 13, 2019 | 9.8 | 37 | NO | NO |
CVE-2026-8108HIGH The installation of Fuji Tellus adds a driver to the kernel which grants all users read and write permissions. | May 12, 2026 | 7.8 | 33 | NO | NO |
CVE-2018-5442CRITICAL A Stack-based Buffer Overflow issue was discovered in Fuji Electric V-Server VPR 4.0.1.0 and prior. The stack-based buffer overflow vulnerability has been identified, which may all | Feb 5, 2018 | 9.8 | 32 | NO | NO |
CVE-2018-14790CRITICAL Fuji Electric FRENIC LOADER v3.3 v7.3.4.1a of FRENIC-Mini (C1), FRENIC-Mini (C2), FRENIC-Eco, FRENIC-Multi, FRENIC-MEGA, FRENIC-Ace. A buffer over-read vulnerability may allow remo | Oct 1, 2018 | 9.8 | 31 | NO | NO |
CVE-2018-14817CRITICAL Fuji Electric V-Server 4.0.3.0 and prior, An integer underflow vulnerability has been identified, which may allow remote code execution. | Sep 26, 2018 | 9.8 | 31 | NO | NO |
CVE-2019-3947CRITICAL Fuji Electric V-Server before 6.0.33.0 stores database credentials in project files as plaintext. An attacker that can gain access to the project file can recover the database cred | Jun 12, 2019 | 9.8 | 30 | NO | NO |
CVE-2018-14802CRITICAL Fuji Electric FRENIC LOADER v3.3 v7.3.4.1a of FRENIC-Mini (C1), FRENIC-Mini (C2), FRENIC-Eco, FRENIC-Multi, FRENIC-MEGA, FRENIC-Ace. The program does not properly check user-suppli | Oct 1, 2018 | 9.8 | 30 | NO | NO |
CVE-2017-9660HIGH A Heap-Based Buffer Overflow was discovered in Fuji Electric Monitouch V-SFT versions prior to Version 5.4.43.0. A heap-based buffer overflow vulnerability has been identified, whi | Aug 14, 2017 | 8.8 | 30 | NO | NO |
CVE-2022-1523CRITICAL Fuji Electric D300win prior to version 3.7.1.17 is vulnerable to a write-what-where condition, which could allow an attacker to overwrite program memory to manipulate the flow of i | Oct 19, 2022 | 9.1 | 29 | NO | NO |
CVE-2018-14794CRITICAL Fuji Electric Alpha5 Smart Loader Versions 3.7 and prior. The device does not perform a check on the length/size of a project file before copying the entire contents of the file to | Oct 1, 2018 | 9.8 | 29 | NO | NO |
Signals from CVEs in this vendor scope (133 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Fujielectric.
Media articles that mention a CVE ID that affects a product developed by Fujielectric — matched by CVE ID, not by vendor name.