CVE-2025-47728: File Parsing Memory Corruption in CNCSoft-G2
Published Jun 4, 2025
·Updated
Delta Electronics CNCSoft-G2 lacks proper validation of the user-supplied file. If a user opens a malicious file, an attacker can leverage this vulnerability to execute code in the context of the current process.
Affected Software
2 affected components
Delta Electronics CNCSoft-G2
Deltaww Cncsoft-g2<2.1.0.27
Event History
Jun 4, 2025
CVE Published
via MITRE·08:11 AM
Data Sourced
via MITRE·08:11 AM
DescriptionWeakness
Data Sourced
via NVD·08:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-47728?
CVE-2025-47728 is considered a critical vulnerability due to the potential for remote code execution.
2
How do I fix CVE-2025-47728?
To mitigate CVE-2025-47728, users should apply any available patches from Delta Electronics for the CNCSoft-G2 software.
3
What type of vulnerability is CVE-2025-47728?
CVE-2025-47728 is a file parsing vulnerability that allows code execution in the context of the current process.
4
Who is affected by CVE-2025-47728?
CVE-2025-47728 affects users of the Delta Electronics CNCSoft-G2 software who open untrusted files.
5
Can CVE-2025-47728 be exploited remotely?
Yes, CVE-2025-47728 can be exploited remotely if a user opens a malicious file.