PT-2025-18242 · Delta Electronics · Ispsoft

CVE-2025-22884

·

Published

2025-04-30

·

Updated

2025-08-25

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Delta Electronics ISPSoft version 3.20
Description The issue is a Stack-Based buffer overflow vulnerability that could allow an attacker to execute arbitrary code when parsing a DVP file. This vulnerability is related to the parsing of DVP files, which could lead to arbitrary code execution.
Recommendations For Delta Electronics ISPSoft version 3.20, consider avoiding the parsing of DVP files until a patch is available. As a temporary workaround, restrict the functionality related to DVP file parsing to minimize the risk of exploitation.

Fix

Memory Corruption

Stack Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-11430
CVE-2025-22884

Affected Products

Ispsoft