CVE-2024-47964: Deltaww Cncsoft-g2
High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.
Delta Electronics CNCSoft-G2 lacks proper validation of the length of user-supplied data prior to copying it to a fixed-length heap-based buffer. An attacker can manipulate users to visit a malicious page or file to leverage this vulnerability to execute code in the context of the current process.
Affected products
- Deltaww Cncsoft-g2: version 2.1.0.10 only
Published 2024-10-10. Last modified 2026-06-17.