7.5
CVE-2023-5459
- EPSS 0.88%
- Veröffentlicht 09.10.2023 19:15:10
- Zuletzt bearbeitet 21.11.2024 08:41:48
- Erkennungen
Delta Electronics DVP32ES2 PLC Password Transmission denial of service
A vulnerability has been found in Delta Electronics DVP32ES2 PLC 1.48 and classified as critical. This vulnerability affects unknown code of the component Password Transmission Handler. The manipulation leads to denial of service. The exploit has been disclosed to the public and may be used. VDB-241582 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Deltaww ≫ Dvp32es200r Firmware Version 1.48
Deltaww ≫ Dvp32es200t Firmware Version 1.48
Deltaww ≫ Dvp32es211t Firmware Version 1.48
Deltaww ≫ Dvp32es200rc Firmware Version 1.48
Deltaww ≫ Dvp32es200tc Firmware Version 1.48
Deltaww ≫ Dvp32es200re Firmware Version 1.48
Deltaww ≫ Dvp32es200te Firmware Version 1.48
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.88% | 0.544 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
|
| cna@vuldb.com | 6.5 | 2.8 | 3.6 |
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
|
| cna@vuldb.com | 6.1 | 6.5 | 6.9 |
AV:A/AC:L/Au:N/C:N/I:N/A:C
|
CWE-404 Improper Resource Shutdown or Release
The product does not release or incorrectly releases a resource before it is made available for re-use.
https://drive.google.com/drive/folders/1mUKkl_NPoUENpPUq-pdQQaEEGvKAaIFB
https://vuldb.com/?ctiid.241582
https://vuldb.com/?id.241582