ZDI-CAN-20785: ZDI-23-906: Delta Electronics InfraSuite Device Master Device-Gateway Deserialization of Untrusted Data Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Delta Electronics InfraSuite Device Master. Authentication is not required to exploit this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-20785?
The severity of ZDI-CAN-20785 is classified as critical due to the potential for remote code execution without authentication.
How do I fix ZDI-CAN-20785?
To fix ZDI-CAN-20785, it is recommended to apply the latest security patches provided by Delta Electronics for InfraSuite Device Master.
Who is affected by ZDI-CAN-20785?
ZDI-CAN-20785 affects installations of Delta Electronics InfraSuite Device Master software.
Can ZDI-CAN-20785 be exploited without authentication?
Yes, ZDI-CAN-20785 can be exploited by remote attackers without the need for authentication.
What potential risks are associated with ZDI-CAN-20785?
The risks associated with ZDI-CAN-20785 include unauthorized remote code execution, which could lead to data breaches or system compromise.