CVE-2024-47964: Heap-based Buffer Overflow vulnerability in Delta Electronics CNCSoft-G2
Delta Electronics CNCSoft-G2 lacks proper validation of the length of user-supplied data prior to copying it to a fixed-length heap-based buffer. An attacker can manipulate users to visit a malicious page or file to leverage this vulnerability to execute code in the context of the current process.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-47964?
CVE-2024-47964 is considered a high-severity vulnerability due to its potential to allow remote code execution.
How do I fix CVE-2024-47964?
To fix CVE-2024-47964, ensure you are using the latest version of Delta Electronics CNCSoft-G2 that addresses this vulnerability.
What type of vulnerability is CVE-2024-47964?
CVE-2024-47964 is a buffer overflow vulnerability caused by improper validation of user-supplied data.
Which software is affected by CVE-2024-47964?
CVE-2024-47964 affects Delta Electronics CNCSoft-G2 version 2.1.0.10.
What can an attacker achieve with CVE-2024-47964?
An attacker can exploit CVE-2024-47964 to execute arbitrary code in the context of the vulnerable application.