TopVuln

High-risk vulnerability digests

CVE-2018-7507

  • HIGH

ics-cert@hq.dhs.gov

Details

CVSS v3
8.8
CVSS v2
6.8
NVD published
2018-05-04 19:29:00
EPSS
1.1% probability · 77.8th percentile — 2026-05-12
Affected versions
Delta Electronics WPLSoft 2.45.0 and prior
Summary
WPLSoft, a common programming tool for Delta Electronics industrial PLCs, contains a heap-based buffer overflow vulnerability. The issue occurs when loading a maliciously crafted file into a fixed-length heap buffer. Opening an untrusted file can lead to remote code execution or application crash.
Remediation
Update WPLSoft to the latest secure version provided by Delta Electronics. Avoid opening project files from untrusted or unknown sources in the application. Implement application whitelisting to prevent unauthorized code execution via the vulnerable tool.
Exploit info
No public exploit found yet.

View on NVD

TopVuln sends digest emails with high-risk CVE picks across multiple authoritative sources—curated with EPSS and AI. Choose daily per-stream emails and optional weekly or monthly roundups.

Subscribe — free email digest or paid plan

Information is aggregated from multiple authoritative sources for convenience; verify with NVD and vendors before operational decisions.