7.8
CVE-2026-3094
- EPSS 0.02%
- Veröffentlicht 04.03.2026 08:36:29
- Zuletzt bearbeitet 06.03.2026 20:12:48
- Quelle 759f5e80-c8e1-4224-bead-956d7b
- CVE-Watchlists
- Unerledigt
Delta Electronics CNCSoft-G2 lacks proper validation of the user-supplied file. If a user opens a malicious file, an attacker can leverage this vulnerability to execute code in the context of the current process.
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Deltaww ≫ Cncsoft-g2 Version < 2.1.0.39
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.02% | 0.044 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| 759f5e80-c8e1-4224-bead-956d7b33c98b | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|
CWE-787 Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.