CVE-2022-4634

All versions prior to Delta Electronic’s CNCSoft version 1.01.34 (running ScreenEditor versions 1.01.5 and prior) are vulnerable to a stack-based buffer overflow, which could allow an attacker to remotely execute arbitrary code.
References
Link Resource
https://www.cisa.gov/uscert/ics/advisories/icsa-23-026-01 Patch Third Party Advisory US Government Resource
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:deltaww:cncsoft:*:*:*:*:*:*:*:*
cpe:2.3:a:deltaww:screeneditor:*:*:*:*:*:*:*:*

History

07 Nov 2023, 03:58

Type Values Removed Values Added
Summary All versions prior to Delta Electronic’s CNCSoft version 1.01.34 (running ScreenEditor versions 1.01.5 and prior) are vulnerable to a stack-based buffer overflow, which could allow an attacker to remotely execute arbitrary code. All versions prior to Delta Electronic’s CNCSoft version 1.01.34 (running ScreenEditor versions 1.01.5 and prior) are vulnerable to a stack-based buffer overflow, which could allow an attacker to remotely execute arbitrary code.

Information

Published : 2023-02-03 03:15

Updated : 2024-02-28 19:51


NVD link : CVE-2022-4634

Mitre link : CVE-2022-4634

CVE.ORG link : CVE-2022-4634


JSON object : View

Products Affected

deltaww

  • cncsoft
  • screeneditor
CWE
CWE-787

Out-of-bounds Write

CWE-121

Stack-based Buffer Overflow