ICSA-25-296-04
·
Published 2025-10-23
·
View on CISA ICS-CERT ↗
Delta Electronics ASDA-Soft
CVSS 7.8
HIGH
Risk Summary
Successful exploitation of these vulnerabilities could allow an attacker to write data outside of the allocated memory buffer.
CVEs (2)
Remediations
- Delta Electronics has released an updated version of ASDA-Soft and recommends users install v7.1.1.0 or newer.
- For more information, see Delta Electronics advisory Delta-PCSA-2025-00019.
- Delta Electronics offers the following general recommendations:
- Do not click on untrusted Internet links or open unsolicited attachments in emails.
- Avoid exposing control systems and equipment to the Internet.
- Place systems and devices behind a firewall and isolate them from the business network.
- When remote access is required, use a secure access method, such as a virtual private network (VPN).
- Contact Delta Electronics via their portal page for any product-related support concerns, information, or materials you may require.
Affected Vendors
Delta Electronics
Affected Products (1)
Delta Electronics
·
ASDA-Soft
<=7.0.2.0
Affected Sectors
Critical Manufacturing
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more