CVE-2025-22882: ISPSoft File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability
Published Apr 30, 2025
·Updated
Delta Electronics ISPSoft version 3.20 is vulnerable to a Stack-Based buffer overflow vulnerability that could allow an attacker to leverage debugging logic to execute arbitrary code when parsing CBDGL file.
Affected Software
2 affected components
Delta Electronics ISPSoft
Deltaww Ispsoft<3.21
Remediation
Information
Download and update to: v3.21 or later
Event History
Apr 30, 2025
CVE Published
via MITRE·07:34 AM
Data Sourced
via MITRE·07:34 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·08:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-22882?
CVE-2025-22882 has been rated as high severity due to its potential for remote code execution.
2
How do I fix CVE-2025-22882?
To fix CVE-2025-22882, update Delta Electronics ISPSoft to the latest version that addresses this vulnerability.
3
What type of vulnerability is CVE-2025-22882?
CVE-2025-22882 is a Stack-Based buffer overflow vulnerability.
4
What can an attacker do with CVE-2025-22882?
An attacker can execute arbitrary code by leveraging debugging logic when parsing a CBDGL file.
5
Which version of ISPSoft is affected by CVE-2025-22882?
Delta Electronics ISPSoft version 3.20 is affected by CVE-2025-22882.