CVE-2024-28040 | Delta Electronics DIAEnergie prior 1.10.00.005 GetDIAE_astListParameters sql injection (icsa-24-074-12)
A vulnerability marked as critical has been reported in Delta Electronics DIAEnergie 1.08.00/1.8.02.004/1.9.01.002/1.9.02.001/1.9.03.001. This impacts the function GetDIAE_astListParameters. This manipulation causes sql injection.
This vulnerability is registered as CVE-2024-28040. Remote exploitation of the attack is possible. No exploit is available.
It is suggested to upgrade the affected component.