ZDI-23-788: Delta Electronics CNCSoft-B DOPSoft DPA File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Delta Electronics CNCSoft-B. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-23-788?
The severity of ZDI-23-788 is critical due to its potential to allow remote code execution.
How do I fix ZDI-23-788?
To fix ZDI-23-788, ensure you update Delta Electronics CNCSoft-B and DOPSoft to the latest versions provided by the vendor.
What types of attacks are possible with ZDI-23-788?
ZDI-23-788 allows remote attackers to execute arbitrary code by requiring user interaction with a malicious web page or file.
Which products are affected by ZDI-23-788?
ZDI-23-788 affects Delta Electronics CNCSoft-B and DOPSoft applications.
Is user interaction needed to exploit ZDI-23-788?
Yes, user interaction is required to exploit ZDI-23-788, either by visiting a malicious page or opening a malicious file.