CVE-2024-25567: Deltaww Diaenergie

High severity, CVSS 8.8. EPSS: 0.7% chance of exploitation in the next 30 days.

Path traversal attack is possible and write outside of the intended directory and may access sensitive information. If a file name is specified that already exists on the file system, then the original file will be overwritten.

Affected products

  • Deltaww Diaenergie: before 1.10.00.005 (fixed in 1.10.00.005)

Published 2024-03-21. Last modified 2026-06-17.