CVE-2023-39226: Delta Electronics InfraSuite Device Master Exposed Dangerous Method Or Function
Published Nov 30, 2023
·Updated
In Delta Electronics InfraSuite Device Master v.1.0.7, a vulnerability exists that allows an unauthenticated attacker to execute arbitrary code through a single UDP packet.
Affected Software
2 affected components
Deltaww Infrasuite Device Master=1.0.7
: Delta Electronics InfraSuite Device Master<=1.0.7
Remediation
Information
Delta Electronics recommends updating their software to v1.0.10 https://datacenter-softwarecenter.deltaww.com/Download/UPS/Software/InfraSuite_Device_Master_1.0.10.exe or later.
Event History
Nov 30, 2023
CVE Published
10:05 PM
Data Sourced
10:05 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for Delta Electronics InfraSuite Device Master Exposed Dangerous Method Or Function?
The vulnerability ID is CVE-2023-39226.
2
What is the severity of CVE-2023-39226?
The severity of CVE-2023-39226 is critical with a CVSS score of 9.8.
3
How does CVE-2023-39226 affect Delta Electronics InfraSuite Device Master v.1.0.7?
CVE-2023-39226 allows an unauthenticated attacker to execute arbitrary code through a single UDP packet in Delta Electronics InfraSuite Device Master v.1.0.7.
4
How can I fix CVE-2023-39226?
To fix CVE-2023-39226, update Delta Electronics InfraSuite Device Master to a version that addresses the vulnerability.
5
Where can I find more information about CVE-2023-39226?
You can find more information about CVE-2023-39226 at https://www.cisa.gov/news-events/ics-advisories/icsa-23-331-01.