#VU13121 Stack-based buffer overflow in Delta Industrial Automation DOPSoft - CVE-2018-10621
Published: June 1, 2018
Delta Industrial Automation DOPSoft
Delta Electronics, Inc.
Description
The vulnerability allows a remote attacker to cause DoS condition or execute arbitrary code on the target system.
The vulnerability exists due to the application utilizes a fixed-length stack buffer where a value larger than the buffer can be read from a .dpa file into the buffer. A remote unauthenticated attacker can trigger stack-based buffer overflow and cause the service to crash or execute arbitrary code with elevated privileges.