7.5

CVE-2023-5459

Delta Electronics DVP32ES2 PLC Password Transmission denial of service

A vulnerability has been found in Delta Electronics DVP32ES2 PLC 1.48 and classified as critical. This vulnerability affects unknown code of the component Password Transmission Handler. The manipulation leads to denial of service. The exploit has been disclosed to the public and may be used. VDB-241582 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Deltaww ≫ Dvp32es200r Firmware Version 1.48
   Deltaww ≫ Dvp32es200r Version -
Deltaww ≫ Dvp32es200t Firmware Version 1.48
   Deltaww ≫ Dvp32es200t Version -
Deltaww ≫ Dvp32es211t Firmware Version 1.48
   Deltaww ≫ Dvp32es211t Version -
Deltaww ≫ Dvp32es200rc Firmware Version 1.48
   Deltaww ≫ Dvp32es200rc Version -
Deltaww ≫ Dvp32es200tc Firmware Version 1.48
   Deltaww ≫ Dvp32es200tc Version -
Deltaww ≫ Dvp32es200re Firmware Version 1.48
   Deltaww ≫ Dvp32es200re Version -
Deltaww ≫ Dvp32es200te Firmware Version 1.48
   Deltaww ≫ Dvp32es200te Version -
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.88% 0.544
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
cna@vuldb.com 6.5 2.8 3.6
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
cna@vuldb.com 6.1 6.5 6.9
AV:A/AC:L/Au:N/C:N/I:N/A:C
CWE-404 Improper Resource Shutdown or Release

The product does not release or incorrectly releases a resource before it is made available for re-use.

https://drive.google.com/drive/folders/1mUKkl_NPoUENpPUq-pdQQaEEGvKAaIFB
Permissions Required
https://vuldb.com/?ctiid.241582
Third Party Advisory
Permissions Required
https://vuldb.com/?id.241582
Third Party Advisory