PT-2021-11372 · Delta Electronics · Cncsoft-B

Kimiya

·

Published

2021-01-11

·

Updated

2021-03-09

·

CVE-2020-27289

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Delta Electronics CNCSoft-B versions 1.0.0.2 and prior
Description: The issue is related to a null pointer dereference problem that occurs while processing project files. This may allow an attacker to execute arbitrary code. The estimated number of potentially affected devices worldwide is not specified. There is no information about real-world incidents where this issue was exploited.
Recommendations: For Delta Electronics CNCSoft-B versions 1.0.0.2 and prior, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Untrusted Pointer Dereference

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-27289
ZDI-21-040

Affected Products

Cncsoft-B