CVE-2022-33005: Deltaww Diaenergie

Medium severity, CVSS 6.1. EPSS: 0.6% chance of exploitation in the next 30 days.

A cross-site scripting (XSS) vulnerability in the System Settings/IOT Settings module of Delta Electronics DIAEnergie v1.08.00 allows attackers to execute arbitrary web scripts via a crafted payload injected into the Name text field.

Affected products

  • Deltaww Diaenergie: version 1.08.00 only

Published 2022-06-27. Last modified 2026-06-17.