CVE-2022-25347
Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) is vulnerable to path traversal attacks, which may allow an attacker to write arbitrary files to locations on the file system.
Scoring
- Severity
- CRITICAL
- CVSS base score
- 9.8
- CVSS vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- EPSS probability
- 0.64%
- CWE
- CWE-37
- Published
- 2022-03-29
- Last modified
- 2026-03-13
Affected products
- Delta Electronics DIAEnergie
Weakness type
Related vulnerabilities
- CVE-2024-12806 — A post-authentication absolute path traversal vulnerability in SonicOS management allows a remote...