Show filters
232 Total Results
Displaying 21-30 of 232
Sort by:
Attacker Value
Unknown

CVE-2024-34031

Disclosure Date: May 03, 2024 (last updated January 31, 2025)
Delta Electronics DIAEnergie is vulnerable to an SQL injection vulnerability that exists in the script Handler_CFG.ashx. An authenticated attacker can exploit this issue to potentially compromise the system on which DIAEnergie is deployed.
Attacker Value
Unknown

CVE-2024-28029

Disclosure Date: March 21, 2024 (last updated October 18, 2024)
Privileges are not fully verified server-side, which can be abused by a user with limited privileges to bypass authorization and access privileged functionality.
Attacker Value
Unknown

CVE-2024-25937

Disclosure Date: March 21, 2024 (last updated January 25, 2025)
SQL injection vulnerability exists in the script DIAE_tagHandler.ashx.
Attacker Value
Unknown

CVE-2023-5131

Disclosure Date: January 18, 2024 (last updated January 25, 2024)
A heap buffer-overflow exists in Delta Electronics ISPSoft. An anonymous attacker can exploit this vulnerability by enticing a user to open a specially crafted DVP file to achieve code execution.
Attacker Value
Unknown

CVE-2023-5130

Disclosure Date: January 18, 2024 (last updated January 25, 2024)
A buffer overflow vulnerability exists in Delta Electronics WPLSoft. An anonymous attacker can exploit this vulnerability by enticing a user to open a specially crafted DVP file to achieve code execution.
Attacker Value
Unknown

CVE-2023-43824

Disclosure Date: January 18, 2024 (last updated January 21, 2024)
A stack based buffer overflow exists in Delta Electronics Delta Industrial Automation DOPSoft when parsing the wTitleTextLen field of a DPS file. A remote, unauthenticated attacker can exploit this vulnerability by enticing a user to open a specially crafted DPS file to achieve remote code execution.
Attacker Value
Unknown

CVE-2023-43823

Disclosure Date: January 18, 2024 (last updated January 21, 2024)
A stack based buffer overflow exists in Delta Electronics Delta Industrial Automation DOPSoft when parsing the wTTitleLen field of a DPS file. A remote, unauthenticated attacker can exploit this vulnerability by enticing a user to open a specially crafted DPS file to achieve remote code execution.
Attacker Value
Unknown

CVE-2023-43822

Disclosure Date: January 18, 2024 (last updated January 21, 2024)
A stack based buffer overflow exists in Delta Electronics Delta Industrial Automation DOPSoft when parsing the wLogTitlesTimeLen field of a DPS file. A remote, unauthenticated attacker can exploit this vulnerability by enticing a user to open a specially crafted DPS file to achieve remote code execution.
Attacker Value
Unknown

CVE-2023-43821

Disclosure Date: January 18, 2024 (last updated January 21, 2024)
A stack based buffer overflow exists in Delta Electronics Delta Industrial Automation DOPSoft when parsing the wLogTitlesActionLen field of a DPS file. A remote, unauthenticated attacker can exploit this vulnerability by enticing a user to open a specially crafted DPS file to achieve remote code execution.
Attacker Value
Unknown

CVE-2023-43820

Disclosure Date: January 18, 2024 (last updated January 21, 2024)
A stack based buffer overflow exists in Delta Electronics Delta Industrial Automation DOPSoft when parsing the wLogTitlesPrevValueLen field of a DPS file. A remote, unauthenticated attacker can exploit this vulnerability by enticing a user to open a specially crafted DPS file to achieve remote code execution.