As cited
Copy frozen at (site build).
vulnerabilities
Delta Electronics DVP12SE PLC
Delta Electronics DVP12SE PLCs contain two critical vulnerabilities affecting all versions: one allows unauthenticated remote access to Modbus TCP functions without credentials, and another enables denial of service attacks through resource exhaustion on the Modbus port. These flaws could permit attackers to remotely execute commands, modify control logic, and disrupt device operations in industrial environments worldwide. Delta Electronics is developing fixes and recommends interim mitigations including IP filtering, password protection, and network isolation.
Why it matters: Unpatched PLCs with CVSS 9.8 severity pose immediate risk to critical manufacturing operations; implement recommended workarounds and network segmentation immediately while awaiting vendor patches.
- Source published
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
vulnerabilities
Delta Electronics DVP12SE PLC
Delta Electronics DVP12SE PLCs contain two critical vulnerabilities affecting all versions: one allows unauthenticated remote access to Modbus TCP functions without credentials, and another enables denial of service attacks through resource exhaustion on the Modbus port. These flaws could permit attackers to remotely execute commands, modify control logic, and disrupt device operations in industrial environments worldwide. Delta Electronics is developing fixes and recommends interim mitigations including IP filtering, password protection, and network isolation.
Why it matters: Unpatched PLCs with CVSS 9.8 severity pose immediate risk to critical manufacturing operations; implement recommended workarounds and network segmentation immediately while awaiting vendor patches.
- Source published
- First seen by Cybersecurity Tracker