CVE-2025-47724: Out-of-bounds Write in CNCSoft
Published Jun 4, 2025
·Updated
Delta Electronics CNCSoft lacks proper validation of the user-supplied file. If a user opens a malicious file, an attacker can leverage this vulnerability to execute code in the context of the current process.
Affected Software
2 affected components
Delta Electronics CNCSoft
Deltaww Cncsoft<=1.01.34
Event History
Jun 4, 2025
CVE Published
via MITRE·07:23 AM
Data Sourced
via MITRE·07:23 AM
DescriptionWeakness
Data Sourced
via NVD·08:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-47724?
The severity of CVE-2025-47724 is considered critical due to the potential for remote code execution.
2
How do I fix CVE-2025-47724?
To fix CVE-2025-47724, users should update to the latest version of CNCSoft provided by Delta Electronics.
3
What type of vulnerabilities does CVE-2025-47724 represent?
CVE-2025-47724 represents a code execution vulnerability due to improper validation of user-supplied files.
4
Who is affected by CVE-2025-47724?
Users of Delta Electronics CNCSoft are affected by CVE-2025-47724 if they open malicious files.
5
Can CVE-2025-47724 be exploited remotely?
Yes, CVE-2025-47724 can be exploited remotely if a malicious file is accessed by a user.