ZDI-CAN-19194: ZDI-23-1289: Delta Electronics DOPSoft DPA File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability
Published Aug 31, 2023
·Updated
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Delta Electronics DOPSoft. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Affected Software
1 affected component
Delta Electronics DOPSoft
Event History
Aug 31, 2023
Advisory Published
05:00 AM
Data Sourced
05:00 AM
Description
Frequently Asked Questions
1
What is the severity of ZDI-CAN-19194?
The severity of ZDI-CAN-19194 is high due to its potential to allow remote code execution.
2
How does ZDI-CAN-19194 get exploited?
ZDI-CAN-19194 can be exploited when a user visits a malicious webpage or opens a malicious file.
3
What software is affected by ZDI-CAN-19194?
ZDI-CAN-19194 affects Delta Electronics DOPSoft installations.
4
What user action is required to exploit ZDI-CAN-19194?
User interaction is required, specifically the act of visiting a malicious page or opening a harmful file.
5
How can I mitigate ZDI-CAN-19194?
Mitigation of ZDI-CAN-19194 involves ensuring that users do not visit untrusted websites or open unknown files.