CVE-2022-25347
critical · 9.8Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) is vulnerable to path traversal attacks, which may allow an attacker to write arbitrary files to locations on the file system.
9.8
CVSS
11.4%
EPSS (exploit prob.)
96th
EPSS percentile
2022-03-29
Published
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-37CWE-22
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| deltaww | diaenergie | < 1.8.02.004 |
Check a specific version with /api/v1/cve/match.
References
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2022-25347