CVE-2018-10623 - CVE House
Back to Database
Status published Critical CVE-2018-10623

Delta Electronics Delta Industrial Automation DOPSoft version 4.00.04 and prior...

Vulnerability Description

Delta Electronics Delta Industrial Automation DOPSoft version 4.00.04 and prior performs read operations on a memory buffer where the position can be determined by a value read from a .dpa file. This may cause improper restriction of operations within the bounds of the memory buffer, allow remote code execution, alter the intended control flow, allow reading of sensitive information, or cause the application to crash.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2018-10623

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Delta Electronics

View all reports →

Affected Software

Delta Industrial Automation DOPSoft
Vulnerable Versions:
Version 4.00.04 and prior.

Timeline

Official Publish: June 18th, 2018
Last Modified: September 17th, 2024
Added to House: July 20th, 2026

CVSS Vectors

V3: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Weaknesses (CWE)