PT-2025-27428 · Delta Electronics · Dtm Soft

Published

2025-02-20

·

Updated

2025-08-22

·

CVE-2025-53415

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Delta Electronics DTM Soft versions (affected versions not specified)
Description: The issue concerns the deserialization of untrusted data in Delta Electronics DTM Soft project file parsing, leading to remote code execution. This allows for the potential execution of malicious code on affected systems. The estimated number of potentially affected devices worldwide is not provided. There is no information about real-world incidents where this issue was exploited. Technical details about exploitation include the deserialization of untrusted data in project file parsing, which can lead to remote code execution.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Deserialization of Untrusted Data

Weakness Enumeration

Related Identifiers

BDU:2025-11426
CVE-2025-53415
ZDI-25-591

Affected Products

Dtm Soft