ZDI-CAN-16888: ZDI-23-671: Delta Industrial Automation DIALink Directory Traversal Arbitrary File Creation Vulnerability
This vulnerability allows remote attackers to create arbitrary files on affected installations of Delta Industrial Automation DIALink. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-16888?
ZDI-CAN-16888 has been rated as a critical vulnerability due to its potential for allowing remote file creation on affected systems.
How do I fix ZDI-CAN-16888?
To mitigate ZDI-CAN-16888, update to the latest version of Delta Industrial Automation DIALink that addresses this vulnerability.
What are the potential impacts of ZDI-CAN-16888?
The potential impacts of ZDI-CAN-16888 include unauthorized file creation, which could lead to further exploitation of the system.
Is authentication required to exploit ZDI-CAN-16888?
Yes, authentication is required to exploit ZDI-CAN-16888, but attackers can bypass the existing authentication mechanisms.
Who is affected by ZDI-CAN-16888?
ZDI-CAN-16888 affects installations of Delta Industrial Automation DIALink.