ZDI-26-296: Delta Electronics ASDA-Soft PAR File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Delta Electronics ASDA-Soft. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2026-5726.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-26-296?
The severity of ZDI-26-296 is rated at 7.8 on the CVSS scale.
How do I fix ZDI-26-296?
To fix ZDI-26-296, ensure that you apply any available patches or updates provided by Delta Electronics for ASDA-Soft.
What does ZDI-26-296 affect?
ZDI-26-296 affects installations of Delta Electronics ASDA-Soft software.
What type of vulnerability is ZDI-26-296?
ZDI-26-296 is a stack-based buffer overflow vulnerability that allows for remote code execution.
What is required for the exploitation of ZDI-26-296?
Exploitation of ZDI-26-296 requires user interaction, such as visiting a malicious page or opening a malicious file.