CVE-2025-47726: Out-of-bounds Write in CNCSoft
Published Jun 4, 2025
·Updated
Delta Electronics CNCSoft lacks proper validation of the user-supplied file. If a user opens a malicious file, an attacker can leverage this vulnerability to execute code in the context of the current process.
Affected Software
2 affected components
Delta Electronics CNCSoft
Deltaww Cncsoft<=1.01.34
Event History
Jun 4, 2025
CVE Published
via MITRE·07:24 AM
Data Sourced
via MITRE·07:24 AM
DescriptionWeakness
Data Sourced
via NVD·08:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-47726?
CVE-2025-47726 has been classified as a high severity vulnerability due to the potential for remote code execution.
2
How do I fix CVE-2025-47726?
To fix CVE-2025-47726, update Delta Electronics CNCSoft to the latest version that addresses the vulnerability.
3
What kind of attack can be executed through CVE-2025-47726?
An attacker can execute arbitrary code in the context of the current process by exploiting CVE-2025-47726.
4
Which software is affected by CVE-2025-47726?
CVE-2025-47726 specifically affects CNCSoft software by Delta Electronics.
5
What happens if I open a malicious file in CNCSoft affected by CVE-2025-47726?
Opening a malicious file in CNCSoft can allow an attacker to execute unauthorized code, compromising the system.