First published: Wed Jul 24 2019(Updated: )
Delta Electronics CNCSoft ScreenEditor, Versions 1.00.89 and prior. Multiple heap-based buffer overflow vulnerabilities may be exploited by processing specially crafted project files, allowing an attacker to remotely execute arbitrary code. There is a lack of user input validation before copying data from project files onto the heap.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Deltaww Screeneditor | <=1.00.89 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-10982 is classified as a high-severity vulnerability due to its potential for remote code execution.
To mitigate CVE-2019-10982, users should update to a fixed version of Delta Electronics CNCSoft ScreenEditor, beyond version 1.00.89.
CVE-2019-10982 contains multiple heap-based buffer overflow vulnerabilities that can be exploited through specially crafted project files.
An attacker exploiting CVE-2019-10982 could remotely execute arbitrary code on the affected system.
CVE-2019-10982 affects users of Delta Electronics CNCSoft ScreenEditor versions 1.00.89 and prior.