This page lists publicly disclosed CVE vulnerabilities affecting deltaww cncsoft (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2025-47727 | Delta Electronics CNCSoft lacks proper validation of the user-supplied file. If a user opens a malicious file, an attacker can leverage this vulnerability to execute code in the context of the current process. | 759f5e80-c8e1-4224-bead-956d7b33c98b | 7.3 | 0.21% | 2025-06-04 | 2025-07-11 |
| CVE-2025-47726 | Delta Electronics CNCSoft lacks proper validation of the user-supplied file. If a user opens a malicious file, an attacker can leverage this vulnerability to execute code in the context of the current process. | 759f5e80-c8e1-4224-bead-956d7b33c98b | 7.3 | 0.21% | 2025-06-04 | 2025-07-11 |
| CVE-2025-47725 | Delta Electronics CNCSoft lacks proper validation of the user-supplied file. If a user opens a malicious file, an attacker can leverage this vulnerability to execute code in the context of the current process. | 759f5e80-c8e1-4224-bead-956d7b33c98b | 7.3 | 0.21% | 2025-06-04 | 2025-07-11 |
| CVE-2025-47724 | Delta Electronics CNCSoft lacks proper validation of the user-supplied file. If a user opens a malicious file, an attacker can leverage this vulnerability to execute code in the context of the current process. | 759f5e80-c8e1-4224-bead-956d7b33c98b | 7.3 | 0.20% | 2025-06-04 | 2025-07-11 |
| CVE-2022-4634 | All versions prior to Delta Electronic’s CNCSoft version 1.01.34 (running ScreenEditor versions 1.01.5 and prior) are vulnerable to a stack-based buffer overflow, which could allow an attacker to remotely execute arbitrary code. | [email protected] | 7.8 | 5.32% | 2023-02-03 | 2024-11-21 |
| CVE-2022-1405 | CNCSoft: All versions prior to 1.01.32 does not properly sanitize input while processing a specific project file, allowing a possible stack-based buffer overflow condition. | [email protected] | 7.8 | 2.17% | 2022-08-31 | 2024-11-21 |
| CVE-2022-1404 | Delta Electronics CNCSoft (All versions prior to 1.01.32) does not properly sanitize input while processing a specific project file, allowing a possible out-of-bounds read condition. | [email protected] | 3.3 | 0.31% | 2022-08-31 | 2024-11-21 |
| CVE-2021-43982 | Delta Electronics CNCSoft Versions 1.01.30 and prior are vulnerable to a stack-based buffer overflow, which may allow an attacker to execute arbitrary code. | [email protected] | 7.8 | 9.59% | 2021-12-09 | 2024-11-21 |
| CVE-2018-10636 | CNCSoft Version 1.00.83 and prior with ScreenEditor Version 1.00.54 has multiple stack-based buffer overflow vulnerabilities that could cause the software to crash due to lacking user input validation before copying data from project files onto the stack. Which may allow an attacker to gain remote code execution with administrator privileges if exploited. | [email protected] | 8.8 | 9.54% | 2018-08-13 | 2024-11-21 |
| CVE-2018-10598 | CNCSoft Version 1.00.83 and prior with ScreenEditor Version 1.00.54 has two out-of-bounds read vulnerabilities could cause the software to crash due to lacking user input validation for processing project files. Which may allow an attacker to gain remote code execution with administrator privileges if exploited. | [email protected] | 8.1 | 3.52% | 2018-08-13 | 2024-11-21 |