ZDI-25-103: (0Day) Delta Electronics ISPSoft CBDGL File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Delta Electronics ISPSoft. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-25-103?
The severity of ZDI-25-103 is classified as critical due to the potential for remote code execution.
How do I fix ZDI-25-103?
To fix ZDI-25-103, install the latest security updates provided by Delta Electronics for ISPSoft.
What types of attacks are possible with ZDI-25-103?
ZDI-25-103 allows attackers to execute arbitrary code on affected installations through malicious web pages or files.
Does ZDI-25-103 require user interaction for exploitation?
Yes, ZDI-25-103 requires user interaction as the target must visit a malicious page or open a malicious file.
Which software is affected by ZDI-25-103?
ZDI-25-103 affects installations of Delta Electronics ISPSoft.