HTTP: Delta Industrial Automation DOPSoft XLS Multiple Buffer Overflow
This signature detects attempts to exploit a known vulnerability against Delta Industrial Automation DOPSoft. A successful attack can lead to a buffer overflow and arbitrary remote code execution within the context of the user.
Extended Description
Delta Electronic DOPSoft 2 (Version 2.00.07 and prior) lacks proper validation of user-supplied data when parsing specific project files. This could result in multiple out-of-bounds write instances. An attacker could leverage this vulnerability to execute code in the context of the current process.
Affected Products
Deltaww dopsoft
References
CVE: CVE-2021-38404
URL: http://www.zerodayinitiative.com/advisories/ZDI-21-960/ http://www.zerodayinitiative.com/advisories/ZDI-21-957/ http://www.zerodayinitiative.com/advisories/ZDI-21-956/ http://www.zerodayinitiative.com/advisories/ZDI-21-958/ http://www.zerodayinitiative.com/advisories/ZDI-21-951/ http://www.zerodayinitiative.com/advisories/ZDI-21-952/
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Deltaww
6.8