Delta Electronics CNCSoft-G2
cpe:2.3:a:deltaww:cncsoft-g2:*:*:*:*:*:*:*
- <= 2.1.0.20
A memory corruption vulnerability due to improper validation of user-supplied files has been identified in Delta Electronics CNCSoft-G2, specifically in versions through 2.1.0.20. This vulnerability allows an attacker to execute code within the context of the current process by opening a malicious file.
Exploitation of this vulnerability leads to an out-of-bounds write, allowing for memory corruption and potential arbitrary code execution.
Users are advised to download and update to CNCSoft-G2 version 2.1.0.27 or later.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.