CVE-2023-43824
CVSS V2 None
CVSS V3 None
Description
A stack based buffer overflow exists in Delta Electronics Delta Industrial Automation DOPSoft when parsing the wTitleTextLen field of a DPS file. A remote, unauthenticated attacker can exploit this vulnerability by enticing a user to open a specially crafted DPS file to achieve remote code execution.
Overview
- CVE ID
- CVE-2023-43824
- Assigner
- XI
- Vulnerability Status
- PUBLISHED
- Published Version
- 2024-01-18T21:16:48.103Z
- Last Modified Date
- 2024-01-18T21:16:48.103Z
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://blog.exodusintel.com/2024/01/18/delta-electronics-delta-industrial-automation-dopsoft-dps-file-wtitletextlen-buffer-overflow-remote-code-execution/ | third-party-advisory |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2023-43824 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-43824 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-06-25 15:55:53 | Added to TrackCVE |