CVE-2022-4634

All versions prior to Delta Electronic’s CNCSoft version 1.01.34 (running ScreenEditor versions 1.01.5 and prior) are vulnerable to a stack-based buffer overflow, which could allow an attacker to remotely execute arbitrary code.
References
Link Resource
https://www.cisa.gov/uscert/ics/advisories/icsa-23-026-01 Patch Third Party Advisory US Government Resource
https://www.cisa.gov/uscert/ics/advisories/icsa-23-026-01 Patch Third Party Advisory US Government Resource
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:deltaww:cncsoft:*:*:*:*:*:*:*:*
cpe:2.3:a:deltaww:screeneditor:*:*:*:*:*:*:*:*

History

21 Nov 2024, 07:35

Type Values Removed Values Added
References () https://www.cisa.gov/uscert/ics/advisories/icsa-23-026-01 - Patch, Third Party Advisory, US Government Resource () https://www.cisa.gov/uscert/ics/advisories/icsa-23-026-01 - Patch, Third Party Advisory, US Government Resource
Summary
  • (es) Todas las versiones anteriores a la versión 1.01.34 de CNCSoft de Delta Electronic (que ejecutan las versiones 1.01.5 y anteriores de ScreenEditor) son vulnerables a un desbordamiento del búfer en la región stack de la memoria, lo que podría permitir a un atacante ejecutar código arbitrario de forma remota.

07 Nov 2023, 03:58

Type Values Removed Values Added
Summary All versions prior to Delta Electronic’s CNCSoft version 1.01.34 (running ScreenEditor versions 1.01.5 and prior) are vulnerable to a stack-based buffer overflow, which could allow an attacker to remotely execute arbitrary code. All versions prior to Delta Electronic’s CNCSoft version 1.01.34 (running ScreenEditor versions 1.01.5 and prior) are vulnerable to a stack-based buffer overflow, which could allow an attacker to remotely execute arbitrary code.

Information

Published : 2023-02-03 03:15

Updated : 2024-11-21 07:35


NVD link : CVE-2022-4634

Mitre link : CVE-2022-4634

CVE.ORG link : CVE-2022-4634


JSON object : View

Products Affected

deltaww

  • screeneditor
  • cncsoft
CWE
CWE-121

Stack-based Buffer Overflow

CWE-787

Out-of-bounds Write