CVE-2022-41779: Critical severity Deltaww Infrasuite Device Master vulnerability
Delta Electronics InfraSuite Device Master versions 00.00.01a and prior deserialize network packets without proper verification. If the device connects to an attacker-controlled server, the attacker could send maliciously crafted packets that would be deserialized and executed, leading to remote code execution.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-41779?
CVE-2022-41779 is a vulnerability in Delta Electronics InfraSuite Device Master versions 00.00.01a and prior that allows remote code execution.
How severe is CVE-2022-41779?
CVE-2022-41779 has a severity rating of 9.8 (Critical).
What software is affected by CVE-2022-41779?
Delta Electronics InfraSuite Device Master versions 00.00.01a and prior are affected by CVE-2022-41779.
How can CVE-2022-41779 be exploited?
CVE-2022-41779 can be exploited by an attacker who sends maliciously crafted packets to the device's server, leading to remote code execution.
Is there a fix for CVE-2022-41779?
There is no specific fix mentioned. It is recommended to upgrade to a version newer than 00.00.02a.