You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
cve-2025-53418
About this tag
CVE-2025-53418 is a high-severity stack-based buffer overflow vulnerability in Delta Electronics COMMGR, an engineering and simulation software used in industrial environments. Affecting versions up to and including v2.9.0, this flaw can lead to arbitrary code execution, posing significant risk to critical manufacturing and industrial control systems. Delta has released version 2.10.0 to patch this vulnerability, along with a related code-injection flaw (CVE-2025-53419). The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has included CVE-2025-53418 in its ICS advisories, urging operators to prioritize patching and network hardening. Discussions on WindowsForum cover the vulnerability details, mitigation steps, and broader implications for OT security.
Delta Electronics has published an advisory warning that its COMMGR engineering and simulation software contains multiple high‑severity vulnerabilities — including a stack‑based buffer overflow (CVE‑2025‑53418) and a code‑injection flaw (CVE‑2025‑53419) — that affect COMMGR versions up to and...
CISA on August 28, 2025, published a batch of nine Industrial Control Systems (ICS) advisories covering critical vulnerabilities across Mitsubishi Electric, Schneider Electric, Delta Electronics, GE Vernova, Hitachi Energy, and ICONICS/Mitsubishi integrations — a coordinated disclosure that...