CVE-2025-4124: ISPSoft File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published Apr 30, 2025
·Updated
Delta Electronics ISPSoft version 3.20 is vulnerable to an Out-Of-Bounds Write vulnerability that could allow an attacker to execute arbitrary code when parsing ISP file.
Affected Software
2 affected components
Delta Electronics ISPSoft
Deltaww Ispsoft<3.21
Remediation
Information
Download and update to: v3.21 or later
Event History
Apr 30, 2025
CVE Published
via MITRE·08:20 AM
Data Sourced
via MITRE·08:20 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·09:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-4124?
CVE-2025-4124 is classified as a high severity vulnerability due to its potential for arbitrary code execution.
2
How do I fix CVE-2025-4124?
To fix CVE-2025-4124, you should update Delta Electronics ISPSoft to the latest version that addresses the Out-Of-Bounds Write vulnerability.
3
Who is affected by CVE-2025-4124?
Users of Delta Electronics ISPSoft version 3.20 are affected by CVE-2025-4124.
4
What kind of vulnerability is CVE-2025-4124?
CVE-2025-4124 is an Out-Of-Bounds Write vulnerability that can lead to arbitrary code execution.
5
When was CVE-2025-4124 disclosed?
CVE-2025-4124 was disclosed in the year 2025.