<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:webfeeds="http://webfeeds.org/rss/1.0"><channel><title>Delta Electronics - CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/vendors/delta-electronics/</link><description>Trending threats, MITRE ATT&amp;CK coverage, and detection metadata. Fed continuously.</description><generator>Hugo</generator><language>en</language><managingEditor>hello@craftedsignal.io</managingEditor><webMaster>hello@craftedsignal.io</webMaster><lastBuildDate>Sat, 29 Aug 2026 14:45:56 +0000</lastBuildDate><atom:link href="https://feed.craftedsignal.io/vendors/delta-electronics/feed.xml" rel="self" type="application/rss+xml"/><image><url>https://feed.craftedsignal.io/favicon-32x32.png</url><title>CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/</link><width>32</width><height>32</height></image><webfeeds:icon>https://feed.craftedsignal.io/favicon.svg</webfeeds:icon><item><title>Privilege Escalation Vulnerability in Delta Electronics Infrasuite Device Master</title><link>https://feed.craftedsignal.io/briefs/2026-08-delta-infrasuite-privesc/</link><pubDate>Sat, 29 Aug 2026 14:45:56 +0000</pubDate><author>hello@craftedsignal.io</author><guid isPermaLink="true">https://feed.craftedsignal.io/briefs/2026-08-delta-infrasuite-privesc/</guid><description>CVE-2023-30765 is a privilege escalation vulnerability in Delta Electronics Infrasuite Device Master versions prior to 1.0.7 that allows an attacker to add arbitrary users to the administrator group.</description><content:encoded><![CDATA[<p>Delta Electronics Infrasuite Device Master versions prior to 1.0.7 are susceptible to a privilege escalation vulnerability tracked as CVE-2023-30765 (ZDI-23-905). This vulnerability allows an authenticated attacker to perform an unauthorized modification of user group memberships, specifically enabling the escalation of a standard user account to the administrator group. The discovery of this flaw, attributed to Piotr Bazydlo, highlights a critical security gap in access control management within the Infrasuite Device Master platform. The availability of a public functional exploit script on repository platforms as of August 2026 significantly increases the likelihood of exploitation attempts against unpatched infrastructure. Security teams should prioritize patching instances to version 1.0.7 or higher to mitigate unauthorized administrative access.</p>
<h2 id="impact">Impact</h2>
<p>Successful exploitation of CVE-2023-30765 allows an attacker to gain full administrative control over the targeted Delta Electronics Infrasuite Device Master instance. This leads to complete system compromise, unauthorized access to sensitive operational data, and potential manipulation of integrated facility management hardware. Given the product's role in infrastructure management, impact includes potential disruption to critical facility services.</p>
<h2 id="recommendation">Recommendation</h2>
<p>Prioritize the upgrade of all internet-facing Delta Electronics Infrasuite Device Master instances to version 1.0.7 or later. Restrict network access to the web management interface, ensuring it is not exposed to the public internet. Audit existing administrator groups for unauthorized users added through non-standard account creation processes. Monitor web server logs for suspicious POST requests targeting user management endpoints consistent with the documented exploit tool usage.</p>
]]></content:encoded><category domain="severity">high</category><category domain="type">advisory</category><category>privilege-escalation</category><category>ics</category><category>cve-2023-30765</category></item></channel></rss>