


Perceptive Security
SOC/SIEM Consultancy

Delta Electronics AS320T has incorrect calculation of the buffer size on the stack in the GET/PUT request handler of the web service.
Published:
23 April 2026 at 22:00:00
Alert date:
24 April 2026 at 07:01:04
Source:
nvd.nist.gov
Critical Infrastructure, Web Technologies, Mobile & IoT
Delta Electronics AS320T industrial device contains a buffer size calculation vulnerability in its web service GET/PUT request handlers. The incorrect calculation of buffer size on the stack could potentially lead to buffer overflow conditions. This affects the device's web service functionality and may allow attackers to exploit the vulnerability through crafted HTTP requests. The vulnerability is part of a broader security advisory covering multiple CVEs affecting the AS320T device. Given the industrial nature of the affected device and the potential for stack-based buffer issues, this represents a significant security risk for industrial control systems.
Technical details
Mitigation steps:
Affected products:
Delta Electronics AS320T
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-1949
https://filecenter.deltaww.com/news/download/doc/Delta-PCSA-2026-00006_AS320T%20Multiple%20vulnerabilities%20(CVE-2026-1949
%201950
%201951
%201952).pdf
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
