Vulnerability Description
A Type Confusion issue was discovered in Delta Electronics Delta Industrial Automation Screen Editor, Version 2.00.23.00 or prior. An access of resource using incompatible type ('type confusion') vulnerability may allow an attacker to execute remote code when processing specially crafted .dpb files.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Deltaww | Delta Industrial Automation Screen Editor | <= 2.00.23.00 |
Related Weaknesses (CWE)
References
- http://www.securityfocus.com/bid/102426Third Party AdvisoryVDB Entry
- https://ics-cert.us-cert.gov/advisories/ICSA-18-004-01Third Party AdvisoryUS Government Resource
- http://www.securityfocus.com/bid/102426Third Party AdvisoryVDB Entry
- https://ics-cert.us-cert.gov/advisories/ICSA-18-004-01Third Party AdvisoryUS Government Resource
FAQ
What is CVE-2017-16745?
CVE-2017-16745 is a vulnerability with a CVSS score of 7.8 (HIGH). A Type Confusion issue was discovered in Delta Electronics Delta Industrial Automation Screen Editor, Version 2.00.23.00 or prior. An access of resource using incompatible type ('type confusion') vuln...
How severe is CVE-2017-16745?
CVE-2017-16745 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-16745?
Check the references section above for vendor advisories and patch information. Affected products include: Deltaww Delta Industrial Automation Screen Editor.