CVE-2023-5459

MEDIUM

Delta Electronics DVP32ES2 PLC 1.48 - Denial of Service in Password Transmission Handler

Title source: llm
STIX 2.1

Description

A vulnerability has been found in Delta Electronics DVP32ES2 PLC 1.48 and classified as critical. This vulnerability affects unknown code of the component Password Transmission Handler. The manipulation leads to denial of service. The exploit has been disclosed to the public and may be used. VDB-241582 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

References (3)

Core 3
Core References
Third Party Advisory vdb-entry
https://vuldb.com/?id.241582
Permissions Required, Third Party Advisory signature permissions-required
https://vuldb.com/?ctiid.241582

Scores

CVSS v3 6.5
EPSS 0.0008
EPSS Percentile 23.1%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-404
Status published
Products (7)
deltaww/dvp32es200r_firmware 1.48
deltaww/dvp32es200rc_firmware 1.48
deltaww/dvp32es200re_firmware 1.48
deltaww/dvp32es200t_firmware 1.48
deltaww/dvp32es200tc_firmware 1.48
deltaww/dvp32es200te_firmware 1.48
deltaww/dvp32es211t_firmware 1.48
Published Oct 09, 2023
Tracked Since Feb 18, 2026