PT-2023-1348 · Delta Electronics · Diascreen

Natnael Samson

+2

·

Published

2023-02-02

·

Updated

2023-05-01

·

CVE-2023-0249

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Delta Electronics DIAScreen versions 1.2.1.23 and prior
Description The issue is related to an out-of-bounds write, which may allow an attacker to remotely execute arbitrary code. This is a result of a buffer overflow vulnerability in the DIAScreen development environment for industrial control system management.
Recommendations For Delta Electronics DIAScreen versions 1.2.1.23 and prior, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Corruption

Weakness Enumeration

Related Identifiers

BDU:2023-00660
CVE-2023-0249
ZDI-23-513
ZDI-23-520

Affected Products

Diascreen