First published: Wed Aug 31 2022(Updated: )
CNCSoft: All versions prior to 1.01.32 does not properly sanitize input while processing a specific project file, allowing a possible stack-based buffer overflow condition.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Deltaww Cncsoft | <1.01.32 | |
Delta Electronics CNCSoft | <1.01.32 | 1.01.32 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-1405 is a vulnerability in CNCSoft versions prior to 1.01.32 that allows a possible stack-based buffer overflow condition.
CVE-2022-1405 affects CNCSoft versions prior to 1.01.32 by not properly sanitizing input while processing a specific project file.
The severity of CVE-2022-1405 is high, with a CVSS score of 7.8.
To fix CVE-2022-1405, update CNCSoft to version 1.01.32 or later.
You can find more information about CVE-2022-1405 at the following link: [CISA Advisory ICSA-22-132-01](https://www.cisa.gov/uscert/ics/advisories/icsa-22-132-01)