WPLSoft, a common programming tool for Delta Electronics industrial PLCs, contains a heap-based buffer overflow vulnerability. The issue occurs when loading a maliciously crafted file into a fixed-length heap buffer. Opening an untrusted file can lead to remote code execution or application crash.
Remediation
Update WPLSoft to the latest secure version provided by Delta Electronics. Avoid opening project files from untrusted or unknown sources in the application. Implement application whitelisting to prevent unauthorized code execution via the vulnerable tool.
TopVuln sends digest emails with high-risk CVE picks across multiple authoritative sources—curated with EPSS and AI. Choose daily per-stream emails and optional weekly or monthly roundups.