CVE-2022-33005: XSS
A cross-site scripting (XSS) vulnerability in the System Settings/IOT Settings module of Delta Electronics DIAEnergie v1.08.00 allows attackers to execute arbitrary web scripts via a crafted payload injected into the Name text field.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-33005?
CVE-2022-33005 is a cross-site scripting (XSS) vulnerability in the System Settings/IOT Settings module of Delta Electronics DIAEnergie v1.08.00.
How does CVE-2022-33005 impact my system?
CVE-2022-33005 allows attackers to execute arbitrary web scripts through a crafted payload injected into the Name text field.
What is the severity of CVE-2022-33005?
CVE-2022-33005 has a severity rating of 6.1, which is considered medium.
How can I fix CVE-2022-33005?
To fix CVE-2022-33005, it is recommended to update to a version of Delta Electronics DIAEnergie that is not affected by this vulnerability.
What is the Common Weakness Enumeration (CWE) ID of CVE-2022-33005?
CVE-2022-33005 is associated with CWE-79, which refers to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting').