CISA

Delta Electronics DTM Soft

From Cybersecurity and Infrastructure Security Agency ↗

Successful exploitation of this vulnerability could allow an attacker to execute arbitrary code.

The following versions of Delta Electronics DTM Soft are affected:

DTMSoft vers:all/* 

Vendor

Equipment

Delta Electronics

Delta Electronics DTM Soft

Deserialization of Untrusted Data

Critical Infrastructure Sectors: Critical Manufacturing

Countries/Areas Deployed: Worldwide

Company Headquarters Location: Taiwan

The affected product is vulnerable to a deserialization of untrusted data, which may allow an attacker to execute arbitrary code.

Delta Electronics DTM Soft

MitigationDelta Electronics is aware of the vulnerability and is currently working on a fix.

MitigationDelta Electronics recommends users apply the following workarounds:

MitigationDo not open unsolicited project files: Do not open or import unsolicited project files, untrusted Internet links, or unexpected attach...