First published: Thu Sep 07 2023(Updated: )
Delta Electronics' CNCSoft-B version 1.0.0.4 and DOPSoft versions 4.0.0.82 and prior are vulnerable to stack-based buffer overflow, which could allow an attacker to execute arbitrary code.
Credit: ics-cert@hq.dhs.gov ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Deltaww Cncsoft-b | <=1.0.0.2 | |
Deltaww Dopsoft | <=4.0.0.82 | |
<=1.0.0.2 | ||
<=4.0.0.82 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-4685.
Delta Electronics' CNCSoft-B version 1.0.0.4 and DOPSoft versions 4.0.0.82 and prior are affected.
The severity of CVE-2023-4685 is high, with a CVSS score of 7.8.
The CWE number associated with this vulnerability is CWE-119, CWE-787, and CWE-121.
An attacker can exploit this vulnerability by performing a stack-based buffer overflow, allowing them to execute arbitrary code.