PT-2025-18242 · Delta Electronics · Ispsoft

Published

2025-04-30

·

Updated

2025-08-25

·

CVE-2025-22884

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Delta Electronics ISPSoft version 3.20
Description The issue is a Stack-Based buffer overflow vulnerability that could allow an attacker to execute arbitrary code when parsing a DVP file. This vulnerability is related to the parsing of DVP files, which could lead to arbitrary code execution.
Recommendations For Delta Electronics ISPSoft version 3.20, consider avoiding the parsing of DVP files until a patch is available. As a temporary workaround, restrict the functionality related to DVP file parsing to minimize the risk of exploitation.

Fix

Memory Corruption

Stack Overflow

Weakness Enumeration

Related Identifiers

BDU:2025-11430
CVE-2025-22884

Affected Products

Ispsoft