Delta Electronics DIAEnergie has insufficient input validation which makes it possible to perform a path traversal attack and write outside of the intended directory. If a file name is specified that already exists on the file system, then the original file will be overwritten.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: icscert

Published: 2024-05-03T00:20:03.319Z

Updated: 2024-06-26T18:22:51.085Z

Reserved: 2024-04-29T17:56:18.036Z


Link: CVE-2024-34033

JSON object: View

cve-icon NVD Information

Status : Awaiting Analysis

Published: 2024-05-03T01:15:48.390

Modified: 2024-05-03T12:50:34.250


Link: CVE-2024-34033

JSON object: View

cve-icon Redhat Information

No data.

CWE