CVE-2024-25937: Deltaww Diaenergie

High severity, CVSS 8.8. EPSS: 8.5% chance of exploitation in the next 30 days.

SQL injection vulnerability exists in the script DIAE_tagHandler.ashx.

Affected products

  • Deltaww Diaenergie: before 1.10.00.005 (fixed in 1.10.00.005)

Published 2024-03-21. Last modified 2026-06-17.