Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-34032


Delta Electronics DIAEnergie is vulnerable to an SQL injection vulnerability that exists in the GetDIACloudList endpoint. An authenticated attacker can exploit this issue to potentially compromise the system on which DIAEnergie is deployed.


Published

2024-05-03T01:15:48.197

Last Modified

2025-01-30T14:31:00.057

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 8.8 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-89

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application deltaww diaenergie 1.10.00.005 Yes

References