Where
-Infinity
0
Severity
9.8
EPSS
0.05%
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

First published (updated )
Severity
9.8
AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Delta Electronics AS320T has no checking of the length of the buffer with the directory name

vulnerability.

Remedy

Upgrade firmware to v1.12 or later
First published (updated )
Severity
9.8
AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Delta Electronics AS320T has denial of service via the undocumented subfunction vulnerability.

Remedy

Upgrade firmware to v1.16 or later
First published (updated )
Severity
9.8
AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Delta Electronics AS320T has No checking of the length of the buffer with the file name vulnerability.

Remedy

Upgrade firmware to v1.16 or later
First published (updated )
Severity
9.8
AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Delta Electronics AS320T has incorrect calculation of the buffer size on the stack in the GET/PUT request handler of the web service.

Remedy

Upgrade firmware to v1.16 or later
First published (updated )
Severity
8.4
EPSS
0.01%
Buffer Overflow
AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

ASDA-Soft Stack-based Buffer Overflow Vulnerability

First published (updated )
Severity
7.5
EPSS
0.06%
AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Delta Electronics COMMGR2 has

Buffer Over-read DoS vulnerability.

Remedy

Please download and upgrade COMMGR2 to v2.11.1 or later.
First published (updated )
Severity
9.8
EPSS
0.06%
Buffer Overflow
AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Delta Electronics COMMGR2 has

Stack-based Buffer Overflow vulnerability.

Remedy

Please download and upgrade COMMGR2 to v2.11.1 or later.
First published (updated )
Severity
7.8
EPSS
0.02%
AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Delta Electronics CNCSoft-G2 lacks proper validation of the user-supplied file. If a user opens a malicious file, an attacker can leverage this vulnerability to execute code in the context of the current process.

Remedy

Download and update to: v2.1.0.39 or later
First published (updated )
Severity
9.8
Buffer Overflow
AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

ASDA-Soft Stack-based Buffer Overflow Vulnerability

Remedy

Download and update to: ASDA-Soft v7.2.2.0 or later (Delta Download Center)
First published (updated )
Severity
9.8
EPSS
0.05%
Command Injection
AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Delta Electronics DIAView has Command Injection vulnerability.

Remedy

Please download and upgrade DIAView to v4.4 or later.
First published (updated )
Severity
9.8
AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Delta Electronics DIAView has multiple vulnerabilities.

Remedy

Please download and upgrade DIAView to v4.4 or later.
First published (updated )
Severity
9.8
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Delta Electronics DIAView has multiple vulnerabilities.

Remedy

Please download and upgrade DIAView to v4.4 or later. In addition, to prevent a potential verification bypass on the database under sophisticated technical analysis, users are strongly advised to enforce firewall isolation to completely restrict unauthorized remote access to the database.
First published (updated )
Severity
9.8
AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H

DVP-12SE11T - Out-of-bound memory write Vulnerability

Remedy

Upgrade firmware to v2.16 or later
First published (updated )
Severity
7.5
Input Validation
AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

DVP-12SE11T - Denial of Service Vulnerability

Remedy

Upgrade firmware to v2.16 or later
First published (updated )
Severity
9.8
Infoleak
AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

DVP-12SE11T - Authentication Bypass via Partial Password Disclosure

Remedy

Upgrade firmware to v2.16 or later
First published (updated )
Severity
9.8
AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H

DVP-12SE11T - Password Protection Bypass

Remedy

Users are advised to implement robust network-level countermeasures in accordance with industry best practices for security. We recommend that users take the following security precautions: > Utilize the Product's IP Whitelisting Feature: Employ the device's built-in IP whitelisting function to restrict Modbus/TCP access solely to known, trusted client IP addresses. > Implement Network Segmentation: Ensure the product is placed within a highly segregated zone > Utilize industrial firewalls to monitor Modbus/TCP traffic
First published (updated )
Severity
7.5
CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:L/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

DVP-12SE - Modbus/TCP Cleartext Transmission of Sensitive Information

Remedy

Users are advised to implement robust network-level countermeasures in accordance with industry best practices for security. We recommend that users take the following security precautions: > Utilize the Product's IP Whitelisting Feature: Employ the device's built-in IP whitelisting function to restrict Modbus/TCP access solely to known, trusted client IP addresses. > Implement Network Segmentation: Ensure the product is placed within a highly segregated zone > Utilize industrial firewalls to monitor Modbus/TCP traffic
First published (updated )
Severity
7.5
Input Validation
AV:A/AC:H/PR:H/UI:R/S:U/C:N/I:N/A:H

Delta Electronics DVP15MC11T lacks proper validation of the modbus/tcp packets and can lead to denial of service.

Remedy

Upgrade firmware to v1.16.0 or later
First published (updated )
Severity
7.8
Buffer Overflow
AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

ASDA-Soft Stack-based Buffer Overflow Vulnerability

Remedy

Download and update to: v7.1.1.0 or later
First published (updated )
Severity
7.8
Buffer Overflow
AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

ASDA-Soft Stack-based Buffer Overflow Vulnerability

Remedy

Download and update to: v7.1.1.0 or later
First published (updated )
Severity
7.8
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:L/VI:L/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

Delta Electronics DIAScreen lacks proper validation of the user-supplied file. If a user opens a malicious file, an attacker can leverage this vulnerability to execute code in the context of the current process.

Remedy

Download and update to DIAScreen v1.6.1 or later
First published (updated )
Severity
7.8
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:L/VI:L/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

Delta Electronics DIAScreen lacks proper validation of the user-supplied file. If a user opens a malicious file, an attacker can leverage this vulnerability to execute code in the context of the current process.

Remedy

Download and update to DIAScreen v1.6.1 or later
First published (updated )
Severity
7.8
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:L/VI:L/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

Delta Electronics DIAScreen lacks proper validation of the user-supplied file. If a user opens a malicious file, an attacker can leverage this vulnerability to execute code in the context of the current process.

Remedy

Download and update to DIAScreen v1.6.1 or later
First published (updated )
Severity
7.8
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:L/VI:L/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

Delta Electronics DIAScreen lacks proper validation of the user-supplied file. If a user opens a malicious file, an attacker can leverage this vulnerability to execute code in the context of the current process.

Remedy

Download and update to DIAScreen v1.6.1 or later
First published (updated )
Severity
7
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Delta Electronics CNCSoft-G2 lacks proper validation of the user-supplied file. If a user opens a malicious file, an attacker can leverage this vulnerability to execute code in the context of the current process.

First published (updated )
Severity
7.8
AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Delta Electronics CNCSoft-G2 lacks proper validation of the user-supplied file. If a user opens a malicious file, an attacker can leverage this vulnerability to execute code in the context of the current process.

Remedy

Download and update to: v2.1.0.34 or later
First published (updated )
Severity
7.3
Path Traversal
AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

Delta Electronics DIALink has an Directory Traversal Authentication Bypass Vulnerability.

Remedy

Users are recommended to download and upgrade to DIALink v1.8.0.0 or later.
First published (updated )
Severity
10
Path Traversal
AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

Delta Electronics DIALink has an Directory Traversal Authentication Bypass Vulnerability.

Remedy

Users are recommended to download and upgrade to DIALink v1.8.0.0 or later.
First published (updated )
Severity
6.1
XSS
CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:P/VC:H/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

DIAEnergie - Reflected Cross-site Scripting

Remedy

Users are recommended to update DIAEnergie to v1.11.01.001 or later.
First published (updated )

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203