CVE-2026-12576

HIGH

DVP80ES3 Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability

Title source: cna
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2026-12576. PoCs published by HermesNA-1.

AI-analyzed exploit summary This repository contains an auto-generated stub module for CVE-2026-12576, a vulnerability in Delta Electronics DVP80ES3 PLC involving improper enforcement of message integrity during transmission. The code includes placeholder methods (`check` and `run`) but lacks actual exploit implementation, referencing an external PDF for details.

Description

DVP80ES3 with Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability.

Exploits (1)

github STUB 1 stars
by HermesNA-1 · pythonpoc
https://github.com/HermesNA-1/SnakeSploit/tree/main/data/modules_generated/cve-2026-12576_dvp80es3_with_improper.py

This repository contains an auto-generated stub module for CVE-2026-12576, a vulnerability in Delta Electronics DVP80ES3 PLC involving improper enforcement of message integrity during transmission. The code includes placeholder methods (`check` and `run`) but lacks actual exploit implementation, referencing an external PDF for details.

Classification
Stub 98%
Attack Type
Other
Complexity
Complex
Reliability
Theoretical
Target: Delta Electronics DVP80ES3 PLC
No auth needed
Prerequisites: Network access to the target PLC (default port 80) · Knowledge of the specific communication protocol or exploit details (not provided in the stub)
mistral-large-3 · analyzed Jul 09, 2026 Full analysis →

Scores

CVSS v3 7.5
EPSS 0.0015
EPSS Percentile 5.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-924
Status published
Products (1)
deltaww/DVP80ES3 < 1.06.00
Published Jul 01, 2026
Tracked Since Jul 01, 2026