Description
DVP80ES3 with 
Improper Resource Shutdown or Release vulnerability.
Published: 2026-07-01
Score: 7.5 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The DVP80ES3 device contains an Improper Resource Shutdown or Release flaw (CWE‑404). The firmware fails to release system resources such as memory, file descriptors, or handles correctly during shutdown, resulting in resource leakage and potentially impairing device operation. It is inferred that repeated triggering of the flaw could consume resources, leading to a denial of service or degraded performance.

Affected Systems

DeltaWw’s DVP80ES3 units running firmware versions older than v01.08.10 are affected. All other firmware releases at the time of this advisory are considered secure.

Risk and Exploitability

The CVSS score of 7.5 signifies high severity. EPSS information is not available and the flaw is not listed in CISA KEV, indicating no current known exploitation on the internet. Based on the description, it is inferred that the attack requires local or authenticated access to the device to induce repeated shutdown conditions. The risk is significant for environments where the device is integral to operational workflows and may expose critical services to interruption.

Generated by OpenCVE AI on July 1, 2026 at 12:52 UTC.

Remediation

Vendor Solution

Users are recommended to update the device firmware to v01.08.10 or later.


OpenCVE Recommended Actions

  • Apply the DeltaWw firmware update to version v01.08.10 or newer on all DVP80ES3 devices.
  • Restrict physical and remote management access so that only trusted personnel can initiate shutdown sequences.
  • Enable device logging and monitor for abnormal resource or shutdown events; investigate and remediate any anomalies promptly.

Generated by OpenCVE AI on July 1, 2026 at 12:52 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 01 Jul 2026 13:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 01 Jul 2026 08:15:00 +0000

Type Values Removed Values Added
Description DVP80ES3 with  Improper Resource Shutdown or Release vulnerability.
Title DVP80ES3 Improper Resource Shutdown or Release Vulnerability
First Time appeared Deltaww
Deltaww dvp80es3
Weaknesses CWE-404
CPEs cpe:2.3:a:deltaww:dvp80es3:*:*:*:*:*:*:*:*
Vendors & Products Deltaww
Deltaww dvp80es3
References
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H'}


Subscriptions

Deltaww Dvp80es3
cve-icon MITRE

Status: PUBLISHED

Assigner: Deltaww

Published:

Updated: 2026-07-01T12:22:28.713Z

Reserved: 2026-06-18T05:22:51.481Z

Link: CVE-2026-12575

cve-icon Vulnrichment

Updated: 2026-07-01T12:22:22.511Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-07-01T14:30:05Z

Weaknesses
  • CWE-404

    Improper Resource Shutdown or Release