Delta Electronics DIAScreen lacks proper validation of the user-supplied file. If a user opens a malicious file, an attacker can leverage this vulnerability to execute code in the context of the current process.
Fixes

Solution

Download and update to DIAScreen v1.6.1 or later


Workaround

No workaround given by the vendor.

History

Fri, 03 Oct 2025 08:30:00 +0000

Type Values Removed Values Added
First Time appeared Delta Electronics
Delta Electronics diascreen
Vendors & Products Delta Electronics
Delta Electronics diascreen

Fri, 03 Oct 2025 02:45:00 +0000

Type Values Removed Values Added
Description Delta Electronics DIAScreen lacks proper validation of the user-supplied file. If a user opens a malicious file, an attacker can leverage this vulnerability to execute code in the context of the current process.
Title File Parsing Out-Of-Bounds Write Vulnerability in DIAScreen
Weaknesses CWE-787
References
Metrics cvssV4_0

{'score': 6.8, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:L/VI:L/VA:H/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Deltaww

Published:

Updated: 2025-10-03T02:24:40.509Z

Reserved: 2025-09-12T01:31:46.229Z

Link: CVE-2025-59300

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2025-10-03T03:15:35.897

Modified: 2025-10-03T03:15:35.897

Link: CVE-2025-59300

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-10-03T08:22:28Z