Vulnerability Details CVE-2022-4634
All versions prior to Delta Electronic’s CNCSoft version 1.01.34 (running ScreenEditor versions 1.01.5 and prior) are vulnerable to a stack-based buffer overflow, which could allow an attacker to remotely execute arbitrary code.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.01
EPSS Ranking 76.2%
CVSS Severity
CVSS v3 Score 7.8
Products affected by CVE-2022-4634
-
cpe:2.3:a:deltaww:cncsoft:1.00.83
-
cpe:2.3:a:deltaww:cncsoft:1.01.30
-
cpe:2.3:a:deltaww:cncsoft:1.01.32
-
cpe:2.3:a:deltaww:screeneditor:1.00.54
-
cpe:2.3:a:deltaww:screeneditor:1.00.84