Lucene search

K

CNCSoft Security Vulnerabilities

cve
cve

CVE-2024-4192

Delta Electronics CNCSoft-G2 lacks proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current...

7.8CVSS

6.9AI Score

0.001EPSS

2024-04-30 11:15 PM
28
cve
cve

CVE-2024-1941

Delta Electronics CNCSoft-B versions 1.0.0.4 and prior are vulnerable to a stack-based buffer overflow, which may allow an attacker to execute arbitrary...

7.8CVSS

7.8AI Score

0.001EPSS

2024-03-01 01:15 AM
51
cve
cve

CVE-2024-1595

Delta Electronics CNCSoft-B DOPSoft prior to v4.0.0.82 insecurely loads libraries, which may allow an attacker to use DLL hijacking and take over the system where the software is...

7.8CVSS

7.5AI Score

0.001EPSS

2024-02-29 08:15 PM
55
cve
cve

CVE-2023-4685

Delta Electronics' CNCSoft-B version 1.0.0.4 and DOPSoft versions 4.0.0.82 and prior are vulnerable to stack-based buffer overflow, which could allow an attacker to execute arbitrary...

7.8CVSS

7.9AI Score

0.001EPSS

2023-09-07 06:15 PM
14
cve
cve

CVE-2023-24014

Delta Electronics' CNCSoft-B DOPSoft versions 1.0.0.4 and prior are vulnerable to heap-based buffer overflow, which could allow an attacker to execute arbitrary...

7.8CVSS

7.8AI Score

0.001EPSS

2023-06-07 09:15 PM
22
cve
cve

CVE-2023-25177

Delta Electronics' CNCSoft-B DOPSoft versions 1.0.0.4 and prior are vulnerable to stack-based buffer overflow, which could allow an attacker to execute arbitrary...

7.8CVSS

7.7AI Score

0.001EPSS

2023-06-07 09:15 PM
16
cve
cve

CVE-2022-4634

All versions prior to Delta Electronic’s CNCSoft version 1.01.34 (running ScreenEditor versions 1.01.5 and prior) are vulnerable to a stack-based buffer overflow, which could allow an attacker to remotely execute arbitrary...

7.8CVSS

7.8AI Score

0.001EPSS

2023-02-03 03:15 AM
26
cve
cve

CVE-2022-1405

CNCSoft: All versions prior to 1.01.32 does not properly sanitize input while processing a specific project file, allowing a possible stack-based buffer overflow...

7.8CVSS

7.7AI Score

0.001EPSS

2022-08-31 04:15 PM
27
6
cve
cve

CVE-2022-1404

Delta Electronics CNCSoft (All versions prior to 1.01.32) does not properly sanitize input while processing a specific project file, allowing a possible out-of-bounds read...

7.1CVSS

6.7AI Score

0.001EPSS

2022-08-31 04:15 PM
30
4
cve
cve

CVE-2021-44768

Delta Electronics CNCSoft (Version 1.01.30) and prior) is vulnerable to an out-of-bounds read while processing a specific project file, which may allow an attacker to disclose...

6.1CVSS

5.3AI Score

0.001EPSS

2022-03-25 07:15 PM
29
cve
cve

CVE-2021-43982

Delta Electronics CNCSoft Versions 1.01.30 and prior are vulnerable to a stack-based buffer overflow, which may allow an attacker to execute arbitrary...

7.8CVSS

7.8AI Score

0.003EPSS

2021-12-09 10:15 PM
25
2
cve
cve

CVE-2021-22668

Delta Industrial Automation CNCSoft ScreenEditor Versions 1.01.28 (with ScreenEditor Version 1.01.2) and prior are vulnerable to an out-of-bounds read while processing project files, which may allow an attacker to execute arbitrary...

9.8CVSS

9.5AI Score

0.005EPSS

2021-05-16 03:15 PM
45
2
cve
cve

CVE-2021-22672

Delta Electronics' CNCSoft ScreenEditor in versions prior to v1.01.30 could allow the corruption of data, a denial-of-service condition, or code execution. The vulnerability may allow an attacker to remotely execute arbitrary...

7.8CVSS

8AI Score

0.001EPSS

2021-05-10 01:15 PM
20
4
cve
cve

CVE-2021-22660

CNCSoft-B Versions 1.0.0.3 and prior is vulnerable to an out-of-bounds read, which may allow an attacker to execute arbitrary...

7.8CVSS

7.8AI Score

0.002EPSS

2021-04-27 01:15 PM
25
cve
cve

CVE-2021-22664

CNCSoft-B Versions 1.0.0.3 and prior is vulnerable to an out-of-bounds write, which may allow an attacker to execute arbitrary...

7.8CVSS

7.8AI Score

0.001EPSS

2021-04-27 01:15 PM
28
cve
cve

CVE-2020-27281

A stack-based buffer overflow may exist in Delta Electronics CNCSoft ScreenEditor versions 1.01.26 and prior when processing specially crafted project files, which may allow an attacker to execute arbitrary...

7.8CVSS

8AI Score

0.001EPSS

2021-01-11 04:15 PM
21
2
cve
cve

CVE-2020-27289

Delta Electronics CNCSoft-B Versions 1.0.0.2 and prior has a null pointer dereference issue while processing project files, which may allow an attacker to execute arbitrary...

7.8CVSS

7.8AI Score

0.001EPSS

2021-01-11 04:15 PM
20
2
cve
cve

CVE-2020-27293

Delta Electronics CNCSoft-B Versions 1.0.0.2 and prior has a type confusion issue while processing project files, which may allow an attacker to execute arbitrary...

7.8CVSS

7.8AI Score

0.002EPSS

2021-01-11 04:15 PM
48
4
cve
cve

CVE-2020-27287

Delta Electronics CNCSoft-B Versions 1.0.0.2 and prior is vulnerable to an out-of-bounds write while processing project files, which may allow an attacker to execute arbitrary...

7.8CVSS

7.8AI Score

0.001EPSS

2021-01-11 04:15 PM
23
3
cve
cve

CVE-2020-27291

Delta Electronics CNCSoft-B Versions 1.0.0.2 and prior is vulnerable to an out-of-bounds read while processing project files, which may allow an attacker to execute arbitrary...

7.8CVSS

7.7AI Score

0.001EPSS

2021-01-11 04:15 PM
18
2
cve
cve

CVE-2020-16203

Delta Industrial Automation CNCSoft ScreenEditor, Versions 1.01.23 and prior. An uninitialized pointer may be exploited by processing a specially crafted project file. Successful exploitation of this vulnerability may allow an attacker to read/modify information, execute arbitrary code, and/or...

7.8CVSS

7.7AI Score

0.001EPSS

2020-08-04 07:15 PM
36
cve
cve

CVE-2020-16201

Delta Industrial Automation CNCSoft ScreenEditor, Versions 1.01.23 and prior. Multiple out-of-bounds read vulnerabilities may be exploited by processing specially crafted project files, which may allow an attacker to read...

3.3CVSS

4AI Score

0.001EPSS

2020-08-04 07:15 PM
35
cve
cve

CVE-2020-16199

Delta Industrial Automation CNCSoft ScreenEditor, Versions 1.01.23 and prior. Multiple stack-based buffer overflow vulnerabilities may be exploited by processing specially crafted project files, which may allow an attacker to read/modify information, execute arbitrary code, and/or crash the...

7.8CVSS

8AI Score

0.002EPSS

2020-08-04 07:15 PM
42
cve
cve

CVE-2020-6976

Delta Industrial Automation CNCSoft ScreenEditor, v1.00.96 and prior. An out-of-bounds read overflow can be exploited when a valid user opens a specially crafted, malicious input file due to the lack of...

5.5CVSS

5.5AI Score

0.002EPSS

2020-03-18 02:15 PM
29
cve
cve

CVE-2020-7002

Delta Industrial Automation CNCSoft ScreenEditor, v1.00.96 and prior. Multiple stack-based buffer overflows can be exploited when a valid user opens a specially crafted, malicious input...

7.8CVSS

7.6AI Score

0.012EPSS

2020-03-18 01:15 PM
29
cve
cve

CVE-2019-10992

Delta Electronics CNCSoft ScreenEditor, Versions 1.00.89 and prior. Multiple out-of-bounds read vulnerabilities may cause information disclosure due to lacking user input validation for processing project...

5.5CVSS

5.4AI Score

0.001EPSS

2019-07-24 03:15 PM
92
cve
cve

CVE-2019-10982

Delta Electronics CNCSoft ScreenEditor, Versions 1.00.89 and prior. Multiple heap-based buffer overflow vulnerabilities may be exploited by processing specially crafted project files, allowing an attacker to remotely execute arbitrary code. There is a lack of user input validation before copying...

7.8CVSS

8AI Score

0.002EPSS

2019-07-24 03:15 PM
105
cve
cve

CVE-2019-10949

Delta Industrial Automation CNCSoft, CNCSoft ScreenEditor Version 1.00.88 and prior. Multiple out-of-bounds read vulnerabilities may be exploited, allowing information disclosure due to a lack of user input validation for processing specially crafted project...

5.5CVSS

5.3AI Score

0.002EPSS

2019-04-17 03:29 PM
29
cve
cve

CVE-2019-10951

Delta Industrial Automation CNCSoft, CNCSoft ScreenEditor Version 1.00.88 and prior. Multiple heap-based buffer overflow vulnerabilities may be exploited by processing specially crafted project files, allowing an attacker to remotely execute arbitrary code. There is a lack of user input validation....

7.8CVSS

8AI Score

0.004EPSS

2019-04-17 03:29 PM
23
2
cve
cve

CVE-2019-10947

Delta Industrial Automation CNCSoft, CNCSoft ScreenEditor Version 1.00.88 and prior. Multiple stack-based buffer overflow vulnerabilities may be exploited by processing specially crafted project files, allowing an attacker to remotely execute arbitrary code. This may occur because CNCSoft lacks...

7.8CVSS

7.9AI Score

0.059EPSS

2019-04-17 03:29 PM
27
cve
cve

CVE-2019-6547

Delta Industrial Automation CNCSoft, CNCSoft ScreenEditor Version 1.00.84 and prior. An out-of-bounds read vulnerability may cause the software to crash due to lacking user input validation for processing project...

5.5CVSS

5.3AI Score

0.001EPSS

2019-02-28 09:29 PM
32
cve
cve

CVE-2018-10636

CNCSoft Version 1.00.83 and prior with ScreenEditor Version 1.00.54 has multiple stack-based buffer overflow vulnerabilities that could cause the software to crash due to lacking user input validation before copying data from project files onto the stack. Which may allow an attacker to gain remote....

8.8CVSS

9.2AI Score

0.01EPSS

2018-08-13 09:47 PM
26
cve
cve

CVE-2018-10598

CNCSoft Version 1.00.83 and prior with ScreenEditor Version 1.00.54 has two out-of-bounds read vulnerabilities could cause the software to crash due to lacking user input validation for processing project files. Which may allow an attacker to gain remote code execution with administrator...

8.1CVSS

8.6AI Score

0.006EPSS

2018-08-13 09:47 PM
26