CVE-2023-43816: Delta Electronics Delta Industrial Automation DOPSoft DPS File wKPFStringLen Buffer Overflow Remote Code Execution
A buffer overflow vulnerability exists in Delta Electronics Delta Industrial Automation DOPSoft version 2 when parsing the wKPFStringLen field of a DPS file. An anonymous attacker can exploit this vulnerability by enticing a user to open a specially crafted DPS file to achieve code execution.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-43816?
CVE-2023-43816 is considered a high severity vulnerability due to the potential for remote code execution.
How do I fix CVE-2023-43816?
To fix CVE-2023-43816, users should update Delta Electronics Delta DOPSoft to the latest version beyond 2.00.07.04.
Can CVE-2023-43816 be exploited remotely?
Yes, CVE-2023-43816 can be exploited remotely if a user opens a specially crafted DPS file from an attacker.
What versions of DOPSoft are affected by CVE-2023-43816?
DOPSoft versions from 2.00.00.00 up to 2.00.07.04 are affected by CVE-2023-43816.
What type of vulnerability is CVE-2023-43816?
CVE-2023-43816 is a buffer overflow vulnerability that arises when parsing specific fields in DPS files.