CVE-2021-44471
22.12.2021, 19:15
DIAEnergie Version 1.7.5 and prior is vulnerable to stored cross-site scripting when an unauthenticated user injects arbitrary code into the parameter name of the script DIAE_HandlerAlarmGroup.ashx.
Vendor | Product | Version |
---|---|---|
deltaww | diaenergie | 𝑥 ≤ 1.7.5 |
𝑥
= Vulnerable software versions