Rewterz Threat Alert – Earth Preta aka Mustang Panda APT Group – Active IOCs
February 2, 2023Rewterz Threat Advisory – CVE-2023-0587 – Trend Micro Apex Vulnerability
February 2, 2023Rewterz Threat Alert – Earth Preta aka Mustang Panda APT Group – Active IOCs
February 2, 2023Rewterz Threat Advisory – CVE-2023-0587 – Trend Micro Apex Vulnerability
February 2, 2023Severity
High
Analysis Summary
CVE-2023-0124 CVSS:7.8
Delta Electronics DOPSoft could allow a remote attacker to execute arbitrary code on the system, caused by an out-of-bounds write flaw. By persuading a victim to open a specially-crafted file, an attacker could exploit this vulnerability to execute arbitrary code or cause a denial of service condition.
CVE-2023-0123 CVSS:7.8
Delta Electronics DOPSoft is vulnerable to a stack-based buffer overflow, caused by improper bounds checking. By persuading a victim to open a specially-crafted file, a remote attacker could overflow a buffer and execute arbitrary code or cause a denial of service condition.
Impact
- Code Execution
- Buffer Overflow
Indicators Of Compromise
CVE
- CVE-2023-0124
- CVE-2023-0123
Affected Vendors
Delta Electronics
Affected Products
- Delta Electronics DOPSoft 4.00.16.22
Remediation
Upgrade to the latest version of DIAScreen, available from the Delta Electronics Web site.