CNCSoft Version 1.00.83 and prior with ScreenEditor Version 1.00.54 has...
Vulnerability Description
CNCSoft Version 1.00.83 and prior with ScreenEditor Version 1.00.54 has two out-of-bounds read vulnerabilities could cause the software to crash due to lacking user input validation for processing project files. Which may allow an attacker to gain remote code execution with administrator privileges if exploited.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2018-10598
Credits & Attribution
No credits recorded in the NVD database.
References
More from ICS-CERT
View All →Affected Vendor
ICS-CERT
View all reports →