First published: Wed Oct 26 2022(Updated: )
The HandlerPageP_KID class in Delta Electronics DIAEnergy v1.9 contains a SQL Injection flaw that could allow an attacker to gain code execution on a remote system.
Credit: vulnreport@tenable.com vulnreport@tenable.com
Affected Software | Affected Version | How to fix |
---|---|---|
Deltaww Diaenergie | =1.9.0 | |
=1.9.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this flaw is CVE-2022-43774.
The affected software is Delta Electronics DIAEnergy v1.9.
The severity of CVE-2022-43774 is critical with a CVSS score of 9.8.
The CWE ID of this vulnerability is CWE-89.
Yes, it is recommended to update to a fixed version provided by the software vendor.