File Parsing Vulnerability in Delta Electronics DIAScreen Product
CVE-2025-59299
6.8MEDIUM
What is CVE-2025-59299?
Delta Electronics DIAScreen suffers from inadequate validation of user-supplied files. This oversight can allow an attacker to execute arbitrary code when a malicious file is opened, potentially compromising the integrity of the system. Users are advised to ensure that any files opened through this application are from trusted sources to mitigate security risks.
Affected Version(s)
DIAScreen Windows 0 < 1.6.1
References
CVSS V4
Score:
6.8
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Natnael Samson working with Trend Micro Zero Day Initiative
Kevin Harwood of CISA