← Back

CVE-2024-34032

nvd nist
Published: May 3, 2024Modified: Jan 30, 2025

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD

Description

Delta Electronics DIAEnergie is vulnerable to an SQL injection vulnerability that exists in the GetDIACloudList endpoint. An authenticated attacker can exploit this issue to potentially compromise the system on which DIAEnergie is deployed.

Affected (1)

Products: Deltaww: Diaenergie
1 product
Diaenergie
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 1.10.00.005

References (2)

Source: ics-cert@hq.dhs.gov
US Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource

Timeline

No history available yet.