Beveiligingsadvies

CVE-2024-39880

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-07-09 21:21:47
Laatst bijgewerkt 2025-08-27 20:42:57
Toegewezen door icscert
CVSS-score 8.4
Status PUBLISHED

Beschrijving

Delta Electronics CNCSoft-G2 lacks proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer. If a target visits a malicious page or opens a malicious file an attacker can leverage this vulnerability to execute code in the context of the current process.