CVE-2021-32991: CSRF
Published Aug 30, 2021
·Updated
Delta Electronics DIAEnergie Version 1.7.5 and prior is vulnerable to cross-site request forgery, which may allow an attacker to cause a user to carry out an action unintentionally.
Affected Software
2 affected componentsFixes available
Delta Electronics DIAEnergie<1.9
1.9
Deltaww Diaenergie<=1.7.5
Event History
Aug 30, 2021
CVE Published
via MITRE·05:12 PM
Data Sourced
via MITRE·05:12 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-32991?
CVE-2021-32991 has a medium severity level due to its potential to facilitate cross-site request forgery attacks.
2
How do I fix CVE-2021-32991?
To remediate CVE-2021-32991, update Delta Electronics DIAEnergie to version 1.9 or later.
3
What does CVE-2021-32991 exploit?
CVE-2021-32991 exploits a vulnerability related to cross-site request forgery, allowing unauthorized actions to be executed by users.
4
Who is affected by CVE-2021-32991?
Users of Delta Electronics DIAEnergie version 1.7.5 and earlier are affected by CVE-2021-32991.
5
Is there a workaround for CVE-2021-32991?
Currently, the best approach against CVE-2021-32991 is to upgrade to the patched version as no official workarounds are provided.