Product Cybersecurity Advisory

EIP Builder - XML External Entity Processing Information Disclosure Vulnerability

1. Summary

Published DateAugust 26, 2025Last UpdatedAugust 26, 2025
SeverityMedium (CVSS v3 5.5)ProductEIP Builder
VulnerabilityXML External Entity Processing Information Disclosure Vulnerability
CorrectedCorrectedWorkaroundNo

2. Affected Products

ProductVersion
EIP BuilderV1.11 and prior

3. Vulnerability Overview

#TypeSeverityCVE IDRelated Link
1CWE-611 XXE - Improper Restriction of XML External Entity ReferenceMediumCVE-2025-57704CVE-2025-57704

4. Mitigations

ProductMitigationsDownload Link
EIP Builder
  • Download and update to: v1.12 or later

5. General Recommendations

  1. Don't click on untrusted Internet links or open unsolicited attachments in emails.
  2. Avoid exposing control systems and equipment to the Internet.
  3. Place systems and devices behind a firewall and isolate them from the business network.
  4. When remote access is required, use a secure access method, such as a virtual private network (VPN).

6. Contact Us

If you have any product-related support concerns, please find a contact from the company's portal page to reach Delta Electronics for any information or materials you may require.

Delta Customer Service Portal

Delta Electronics constantly monitors for both known and unknown threats. Being proactive rather than reactive to emerging security issues is fundamental for product support at Delta Electronics.

7. Term of Use

Please visit the links below for more information on the scope of terms of use.

PDF preview unavailable. Download the PDF instead.

Delta-PCSA-2025-00013 EIP Builder XML External Entity Processing Information Disclosure Vulnerability Adobe PDF Library 22.3.86

Related Documents

Preview DIAEnergie Cross-Site Scripting Vulnerabilities - Cybersecurity Advisory
Product cybersecurity advisory from Delta Electronics detailing Cross-Site Scripting (XSS) vulnerabilities in DIAEnergie, including affected versions, CVE IDs, and mitigation steps.
Preview COMMGR Cybersecurity Advisory: Stack-based Buffer Overflow and Code Injection Vulnerabilities
Product cybersecurity advisory for COMMGR detailing stack-based buffer overflow and code injection vulnerabilities (CVE-2025-53418, CVE-2025-53419), including affected products, overview, mitigations, and recommendations from Delta Electronics.
Preview DIAView Cybersecurity Advisory: Directory Traversal Information Disclosure
Advisory detailing a Directory Traversal vulnerability (CVE-2025-53417) in Delta Electronics' DIAView software, including affected versions, severity, and mitigation steps.
Preview Delta Electronics, Inc. 2Q 2025 Financial Results and 1H 2025 Performance
Delta Electronics presents its financial results for the second quarter of 2025 and the first half of 2025, covering sales revenues, gross profits, operating profits and expenses, segment performance, non-operating profits, profits before tax, net profits after tax, and earnings per share (EPS). The document also outlines the company's business categories.
Preview Delta DOP-107PV HMI Instruction Sheet and Specifications
Comprehensive instruction sheet and hardware specifications for the Delta DOP-107PV Human Machine Interface (HMI), covering general precautions, installation, wiring, communication port assignments, and technical details for industrial automation.
Preview Delta M Series Solar Inverter: Operation and Installation Manual
Comprehensive operation and installation manual for Delta M Series solar inverters (M4-TL-US, M5-TL-US, M6-TL-US, M8-TL-US, M10-TL-US), covering safety, installation, electrical connections, commissioning, and technical specifications.
Preview Delta VFD-F Series User Manual: Fan and Pump Applications
Comprehensive user manual for Delta's VFD-F Series AC drives, detailing installation, operation, parameter settings, and troubleshooting for fan and pump applications.
Preview 80 PLUS Verification and Testing Report: Delta DPS-150AB-23 A Power Supply
Comprehensive 80 PLUS verification and testing report for the Delta Electronics DPS-150AB-23 A 150W power supply, detailing efficiency, power measurements, and compliance with Silver standards.