Vulnerabilities > CVE-2020-27275 - Out-of-bounds Write vulnerability in Deltaww Dopsoft 2.00.07/4.0.8.21/4.00.08.15
Attack vector
LOCAL Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
Delta Electronics DOPSoft Version 4.0.8.21 and prior is vulnerable to an out-of-bounds write while processing project files, which may allow an attacker to execute arbitrary code.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 4 |
Common Weakness Enumeration (CWE)
References
- https://us-cert.cisa.gov/ics/advisories/icsa-21-005-05
- https://www.zerodayinitiative.com/advisories/ZDI-21-034/
- https://www.zerodayinitiative.com/advisories/ZDI-21-035/
- https://www.zerodayinitiative.com/advisories/ZDI-21-036/
- https://www.zerodayinitiative.com/advisories/ZDI-21-037/
- https://www.zerodayinitiative.com/advisories/ZDI-21-038/
- https://www.zerodayinitiative.com/advisories/ZDI-21-028/
- https://www.zerodayinitiative.com/advisories/ZDI-21-029/
- https://www.zerodayinitiative.com/advisories/ZDI-21-032/