CVE

CVE-2021-44471

CVE-2021-44471

DIAEnergie Version 1.7.5 and prior is vulnerable to stored cross-site scripting when an unauthenticated user injects arbitrary code into the parameter “name� of the script “DIAE_HandlerAlarmGroup.ashx�.

Source: CVE-2021-44471

Exit mobile version