CVE-2024-28171: Deltaww Diaenergie

High severity, CVSS 8.1. EPSS: 0.6% chance of exploitation in the next 30 days.

It is possible to perform a path traversal attack and write outside of the intended directory. If a file name is specified that already exists on the file system, then the original file will be overwritten.

Affected products

  • Deltaww Diaenergie: before 1.10.00.005 (fixed in 1.10.00.005)

Published 2024-03-21. Last modified 2026-06-17.