Stack-Based Buffer Overflow in Delta Electronics ISPSoft
CVE-2025-22884

7.8HIGH

Key Information:

Status
Vendor
CVE Published:
30 April 2025

Summary

Delta Electronics ISPSoft version 3.20 has a stack-based buffer overflow vulnerability that may allow an attacker to execute arbitrary code when manipulating DVP files. This issue poses a significant risk, as it can be exploited through maliciously crafted files, potentially compromising the integrity and security of systems utilizing this software. Users are advised to review their implementations and apply appropriate mitigations to safeguard against this vulnerability.

Affected Version(s)

ISPSoft Windows 0 <= 3.20

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.