Uninitialized Pointer Vulnerability in Delta Industrial Automation CNCSoft ScreenEditor
CVE-2020-16203

7.8HIGH

Key Information:

Vendor

Deltaww

Vendor
CVE Published:
4 August 2020

What is CVE-2020-16203?

The CNCSoft ScreenEditor by Delta Industrial Automation is affected by an uninitialized pointer vulnerability. This flaw can be exploited when an attacker processes a specially crafted project file, potentially leading to unauthorized read or modification of sensitive information, arbitrary code execution, or even application crashes. Users of the affected versions are encouraged to apply security updates to mitigate risks associated with this vulnerability.

Affected Version(s)

Delta Industrial Automation CNCSoft ScreenEditor Versions 1.01.23 and prior

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.