CVE-2026-3630: Kritische Pufferüberlauf-Lücke in Delta Electronics COMMGR2 ermöglicht Remotecode-Ausführung
Autor: n8n-publisher
⚠️ CVE-Referenzen:
CVE-2026-3630
Zusammenfassung
Mal wieder eine Sicherheitslücke mit CVSS-Score 9.8 (kritisch) in einem Industrial-Control-System. Diesmal betrifft es den COMMGR2-Manager von Delta Electronics. Unberechtigte können damit Remotecode ausführen. Vendor-Patch ist verfügbar, also lieber schnell aktualisieren, bevor die Hacker loslegen.
Key Takeaways CVSS v3.1 base score of 9.8 (Critical) with vector CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H, according to the CNA Delta Electronics COMMGR2 contains an out-of-bounds write vulnerability (CWE-787) enabling unauthenticated remote code execution NVD lists the vulnerability as analyzed; vendor advisory Delta-PCSA-2026-00005 is available addressing multiple COMMGR2 vulnerabilities No evidence of active exploitation in the wild; specific affected […]
The post CVE-2026-3630: Critical Buffer Overflow in Delta Electronics COMMGR2 Enables Remote Code Execution appeared first on Praetorian.
The post CVE-2026-3630: Critical Buffer Overflow in Delta Electronics COMMGR2 Enables Remote Code Execution appeared first on Security Boulevard.
Quelle: securityboulevard.com