← All CVEs

CVE-2022-25347

critical · 9.8

Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) is vulnerable to path traversal attacks, which may allow an attacker to write arbitrary files to locations on the file system.

9.8
CVSS
11.4%
EPSS (exploit prob.)
96th
EPSS percentile
2022-03-29
Published

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Weaknesses

CWE-37CWE-22

Affected products

VendorProductAffected versions
deltawwdiaenergie< 1.8.02.004

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2022-25347