PT-2025-18242 · Delta Electronics · Ispsoft
Published
2025-04-30
·
Updated
2025-08-25
·
CVE-2025-22884
CVSS v3.1
10
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Delta Electronics ISPSoft version 3.20
Description
The issue is a Stack-Based buffer overflow vulnerability that could allow an attacker to execute arbitrary code when parsing a DVP file. This vulnerability is related to the parsing of DVP files, which could lead to arbitrary code execution.
Recommendations
For Delta Electronics ISPSoft version 3.20, consider avoiding the parsing of DVP files until a patch is available. As a temporary workaround, restrict the functionality related to DVP file parsing to minimize the risk of exploitation.
Fix
Memory Corruption
Stack Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Ispsoft