CVE-2022-4634: Buffer Overflow
All versions prior to Delta Electronic’s CNCSoft version 1.01.34 (running ScreenEditor versions 1.01.5 and prior) are vulnerable to a stack-based buffer overflow, which could allow an attacker to remotely execute arbitrary code.
Affected Software
Remediation
Patch Available
Information
Event History
Frequently Asked Questions
What is CVE-2022-4634?
CVE-2022-4634 is a vulnerability in Delta Electronic's CNCSoft and ScreenEditor software that allows an attacker to remotely execute arbitrary code.
What is the severity of CVE-2022-4634?
The severity of CVE-2022-4634 is high, with a CVSS score of 7.8.
Which software versions are affected by CVE-2022-4634?
All versions prior to Delta Electronic's CNCSoft version 1.01.34 (running ScreenEditor versions 1.01.5 and prior) are affected by CVE-2022-4634.
How can an attacker exploit CVE-2022-4634?
An attacker can exploit CVE-2022-4634 by leveraging a stack-based buffer overflow vulnerability in the affected software to execute arbitrary code remotely.
Is there a fix for CVE-2022-4634?
Yes, updating to Delta Electronic's CNCSoft version 1.01.34 and ScreenEditor versions 1.01.5 or later can mitigate the vulnerability.