Trumpf is an industrial machinery and fabrication-software vendor whose vulnerability footprint centers on its CAM and production-control products, notably the TruTops line (Boost, Fab, Monitor) and Oseon platform. The recurring exposure reflects access-control and authentication weaknesses characteristic of manufacturing software that bridges design systems and shop-floor machinery.
The number and severity of CVEs published that impact products developed by Trumpf over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-2052CRITICAL Multiple Trumpf Products in multiple versions use default privileged Windows users and passwords. An adversary may use these accounts to remotely gain full access to the system. | Oct 17, 2022 | 9.8 | 31 | NO | NO |
CVE-2022-1300CRITICAL Multiple Version of TRUMPF TruTops products expose a service function without necessary authentication. Execution of this function may result in unauthorized access to change of da | May 2, 2022 | 9.8 | 31 | NO | NO |
CVE-2023-3935CRITICAL A heap buffer overflow vulnerability in Wibu CodeMeter Runtime network service up to version 7.60b allows an unauthenticated, remote attacker to achieve RCE and gain full access of | Sep 13, 2023 | 9.8 | 30 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Trumpf.
Media articles that mention a CVE ID that affects a product developed by Trumpf — matched by CVE ID, not by vendor name.