Command Injection Vulnerability in Delta Electronics DIAView
CVE-2026-0975

7.8HIGH

Key Information:

Status
Vendor
CVE Published:
16 January 2026

What is CVE-2026-0975?

Delta Electronics DIAView has a command injection vulnerability that enables an attacker to execute arbitrary commands on the server. By exploiting this vulnerability, unauthorized actors can potentially gain control over the affected system, compromising its security and integrity. This issue arises from improper validation of user input, which allows commands to be injected and executed without sufficient restrictions. Organizations using DIAView should take immediate action to mitigate this risk by applying the necessary patches and monitoring their environments for suspicious activities.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

DIAView Windows 0 <= 4.2.0

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

CISA
ZDI
.