CVE-2024-4549: Delta Electronics DIAEnergie SQL Injection
Published May 6, 2024
·Updated
A denial of service vulnerability exists in Delta Electronics DIAEnergie v1.10.1.8610 and prior. When processing an 'ICS Restart!' message, CEBC.exe restarts the system.
Affected Software
2 affected components
Delta Electronics DIAEnergie<1.10.1.8610
Deltaww Diaenergie<1.10.01.004
Event History
May 6, 2024
CVE Published
via MITRE·01:54 PM
Data Sourced
via MITRE·01:54 PM
DescriptionSeverity
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-4549?
CVE-2024-4549 has been classified as a denial of service vulnerability.
2
How do I fix CVE-2024-4549?
To address CVE-2024-4549, upgrade Delta Electronics DIAEnergie to version 1.10.1.8611 or higher.
3
What causes the denial of service in CVE-2024-4549?
The denial of service in CVE-2024-4549 occurs when the system processes an 'ICS Restart!' message.
4
Which versions of Delta Electronics DIAEnergie are affected by CVE-2024-4549?
CVE-2024-4549 affects Delta Electronics DIAEnergie versions up to and including 1.10.1.8610.
5
Is there a workaround for CVE-2024-4549?
There is no official workaround for CVE-2024-4549; the recommended solution is to upgrade the software.