CVE-2022-1371: SQL Injection
Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) has a blind SQL injection vulnerability exists in ReadRegf. This allows an attacker to inject arbitrary SQL queries, retrieve and modify database contents, and execute system commands.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2022-1371?
CVE-2022-1371 is a blind SQL injection vulnerability in Delta Electronics DIAEnergie versions prior to 1.8.02.004.
What is the severity of CVE-2022-1371?
The severity of CVE-2022-1371 is critical with a CVSS score of 9.8.
How can an attacker exploit CVE-2022-1371?
An attacker can exploit CVE-2022-1371 by injecting arbitrary SQL queries, retrieving and modifying database contents, and executing system commands.
Which software versions are affected by CVE-2022-1371?
Delta Electronics DIAEnergie versions prior to 1.8.02.004 are affected by CVE-2022-1371.
Is there a fix available for CVE-2022-1371?
Yes, the fix for CVE-2022-1371 is to upgrade to version 1.8.02.004 of Delta Electronics DIAEnergie.