Vulnerabilities (CVE)

Filtered by vendor Deltaww Subscribe
Filtered by product Diaenergie
Total 82 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-31558 1 Deltaww 1 Diaenergie 2026-06-17 4.3 MEDIUM 6.5 MEDIUM
DIAEnergie Version 1.7.5 and prior is vulnerable to stored cross-site scripting when an unauthenticated user injects arbitrary code into the parameter “descr” of the script “DIAE_hierarchyHandler.ashx”.
CVE-2021-23228 1 Deltaww 1 Diaenergie 2026-06-17 4.3 MEDIUM 7.5 HIGH
DIAEnergie Version 1.7.5 and prior is vulnerable to a reflected cross-site scripting attack through error pages that are returned by “.NET Request.QueryString”.