CVE-2021-33003: Medium severity diaenergie vulnerability
Published Aug 30, 2021
·Updated
Delta Electronics DIAEnergie Version 1.7.5 and prior may allow an attacker to retrieve passwords in cleartext due to a weak hashing algorithm.
Affected Software
2 affected componentsFixes available
Delta Electronics DIAEnergie<1.9
1.9
Deltaww Diaenergie<=1.7.5
Event History
Aug 30, 2021
CVE Published
via MITRE·05:10 PM
Data Sourced
via MITRE·05:10 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-33003?
CVE-2021-33003 is classified as a high severity vulnerability due to the risk of exposing passwords in cleartext.
2
What causes CVE-2021-33003?
CVE-2021-33003 is caused by a weak hashing algorithm used in Delta Electronics DIAEnergie versions prior to 1.7.6.
3
How do I fix CVE-2021-33003?
To fix CVE-2021-33003, upgrade Delta Electronics DIAEnergie to version 1.9 or newer.
4
What are the potential impacts of CVE-2021-33003?
CVE-2021-33003 may allow attackers to retrieve sensitive passwords, leading to unauthorized access to systems.
5
Is CVE-2021-33003 remotely exploitable?
Yes, CVE-2021-33003 can potentially be exploited remotely if the affected software is accessible over a network.