CVE-2022-26013: Delta Electronics DIAEnergie SQL Injection in DIAE_dmdsetHandler.ashx
Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) has a blind SQL injection vulnerability that exists in DIAEdmdsetHandler.ashx. This allows an attacker to inject arbitrary SQL queries, retrieve and modify database contents, and execute system commands.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the vulnerability ID for Delta Electronics DIAEnergie?
The vulnerability ID for Delta Electronics DIAEnergie is CVE-2022-26013.
What is the severity of CVE-2022-26013?
The severity of CVE-2022-26013 is critical, with a severity value of 9.8.
What is the affected software for CVE-2022-26013?
The affected software for CVE-2022-26013 is Delta Electronics DIAEnergie, all versions prior to 1.8.02.004.
What is the description of CVE-2022-26013?
CVE-2022-26013 is a blind SQL injection vulnerability that exists in DIAE_dmdsetHandler.ashx in Delta Electronics DIAEnergie, allowing an attacker to inject arbitrary SQL queries, retrieve and modify database contents, and execute system commands.
Are there any references for CVE-2022-26013?
Yes, you can find more information about CVE-2022-26013 at the following reference: [CISA Advisory ICSA-22-081-01](https://www.cisa.gov/uscert/ics/advisories/icsa-22-081-01).