CVE-2023-25177: Delta Electronics CNCSoft-B DOPSoft Stack-based buffer overflow
Published Jun 7, 2023
·Updated
Delta Electronics' CNCSoft-B DOPSoft versions 1.0.0.4 and prior are vulnerable to stack-based buffer overflow, which could allow an attacker to execute arbitrary code.
Affected Software
1 affected component
Deltaww Cncsoft-b<=1.0.0.4
Remediation
Information
Delta Electronics has released the following mitigations:
* Update to CNCSoft-B (v1.0.0.4) DOPSoft v4.0.0.82 https://downloadcenter.deltaww.com/en-US/DownloadCenter or later.
Event History
Jun 7, 2023
CVE Published
via MITRE·08:51 PM
Data Sourced
via MITRE·08:51 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for Delta Electronics CNCSoft-B DOPSoft?
The vulnerability ID for Delta Electronics CNCSoft-B DOPSoft is CVE-2023-25177.
2
Which versions of Delta Electronics CNCSoft-B DOPSoft are affected by the vulnerability?
Versions 1.0.0.4 and prior of Delta Electronics CNCSoft-B DOPSoft are affected by the vulnerability.
3
What is the severity of CVE-2023-25177?
The severity of CVE-2023-25177 is high with a CVSS score of 7.8.
4
What is the vulnerability type of CVE-2023-25177?
CVE-2023-25177 is a stack-based buffer overflow vulnerability.
5
How can the vulnerability be exploited?
The vulnerability allows an attacker to execute arbitrary code.