ZDI-23-1288: Delta Electronics DOPSoft DPA File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability
Published Aug 31, 2023
·Updated
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Delta Electronics DOPSoft. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Affected Software
1 affected component
Delta Electronics DOPSoft
Event History
Aug 31, 2023
Advisory Published
05:00 AM
Data Sourced
05:00 AM
Description
Frequently Asked Questions
1
What is the severity of ZDI-23-1288?
The severity of ZDI-23-1288 is high due to its ability to allow remote code execution.
2
How do I fix ZDI-23-1288?
To fix ZDI-23-1288, update Delta Electronics DOPSoft to the latest version provided by the vendor.
3
Who is affected by ZDI-23-1288?
Users of Delta Electronics DOPSoft are affected by the ZDI-23-1288 vulnerability.
4
What kind of attack does ZDI-23-1288 facilitate?
ZDI-23-1288 facilitates remote code execution attacks requiring user interaction.
5
Is user interaction required for ZDI-23-1288 exploitation?
Yes, user interaction is required to exploit ZDI-23-1288, as the user must visit a malicious page or open a malicious file.