Filtered by vendor Deltaww
Subscribe
Total
286 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2026-3630 | 1 Deltaww | 1 Commgr2 | 2026-03-10 | N/A | 9.8 CRITICAL |
| Delta Electronics COMMGR2 has Stack-based Buffer Overflow vulnerability. | |||||
| CVE-2026-3631 | 1 Deltaww | 1 Commgr2 | 2026-03-10 | N/A | 7.5 HIGH |
| Delta Electronics COMMGR2 has Buffer Over-read DoS vulnerability. | |||||
| CVE-2026-3094 | 1 Deltaww | 1 Cncsoft-g2 | 2026-03-06 | N/A | 7.8 HIGH |
| Delta Electronics CNCSoft-G2 lacks proper validation of the user-supplied file. If a user opens a malicious file, an attacker can leverage this vulnerability to execute code in the context of the current process. | |||||
| CVE-2022-3214 | 1 Deltaww | 1 Diaenergie | 2026-02-25 | N/A | 9.8 CRITICAL |
| Delta Industrial Automation's DIAEnergy, an industrial energy management system, is vulnerable to CWE-798, Use of Hard-coded Credentials. Versions prior to 1.9.03.009 have this vulnerability. Executable files could be uploaded to certain directories using hard-coded bearer authorization, allowing remote code execution. | |||||
| CVE-2026-1361 | 1 Deltaww | 1 Asda Soft | 2026-02-17 | N/A | 7.8 HIGH |
| ASDA-Soft Stack-based Buffer Overflow Vulnerability | |||||
| CVE-2026-0975 | 1 Deltaww | 1 Diaview | 2026-01-20 | N/A | 7.8 HIGH |
| Delta Electronics DIAView has Command Injection vulnerability. | |||||
| CVE-2025-62581 | 1 Deltaww | 1 Diaview | 2026-01-20 | N/A | 9.8 CRITICAL |
| Delta Electronics DIAView has multiple vulnerabilities. | |||||
| CVE-2025-62582 | 1 Deltaww | 1 Diaview | 2026-01-20 | N/A | 9.8 CRITICAL |
| Delta Electronics DIAView has multiple vulnerabilities. | |||||
| CVE-2025-62578 | 1 Deltaww | 2 Dvp-12se, Dvp-12se Firmware | 2026-01-08 | N/A | 7.5 HIGH |
| DVP-12SE - Modbus/TCP Cleartext Transmission of Sensitive Information | |||||
| CVE-2025-59301 | 1 Deltaww | 2 Dvp15mc11t, Dvp15mc11t Firmware | 2026-01-08 | N/A | 4.0 MEDIUM |
| Delta Electronics DVP15MC11T lacks proper validation of the modbus/tcp packets and can lead to denial of service. | |||||
| CVE-2025-15102 | 1 Deltaww | 2 Dvp-12se11t, Dvp-12se11t Firmware | 2026-01-06 | N/A | 9.1 CRITICAL |
| DVP-12SE11T - Password Protection Bypass | |||||
| CVE-2025-15103 | 1 Deltaww | 2 Dvp-12se11t, Dvp-12se11t Firmware | 2026-01-06 | N/A | 8.1 HIGH |
| DVP-12SE11T - Authentication Bypass via Partial Password Disclosure | |||||
| CVE-2025-15358 | 1 Deltaww | 2 Dvp-12se11t, Dvp-12se11t Firmware | 2026-01-06 | N/A | 7.5 HIGH |
| DVP-12SE11T - Denial of Service Vulnerability | |||||
| CVE-2025-15359 | 1 Deltaww | 2 Dvp-12se11t, Dvp-12se11t Firmware | 2026-01-05 | N/A | 9.1 CRITICAL |
| DVP-12SE11T - Out-of-bound memory write Vulnerability | |||||
| CVE-2024-23494 | 1 Deltaww | 1 Diaenergie | 2025-11-05 | N/A | 8.8 HIGH |
| SQL injection vulnerability exists in GetDIAE_unListParameters. | |||||
| CVE-2024-28891 | 1 Deltaww | 1 Diaenergie | 2025-11-05 | N/A | 8.8 HIGH |
| SQL injection vulnerability exists in the script Handler_CFG.ashx. | |||||
| CVE-2024-23975 | 1 Deltaww | 1 Diaenergie | 2025-11-05 | N/A | 8.8 HIGH |
| SQL injection vulnerability exists in GetDIAE_slogListParameters. | |||||
| CVE-2024-25567 | 1 Deltaww | 1 Diaenergie | 2025-11-05 | N/A | 8.1 HIGH |
| Path traversal attack is possible and write outside of the intended directory and may access sensitive information. If a file name is specified that already exists on the file system, then the original file will be overwritten. | |||||
| CVE-2024-28040 | 1 Deltaww | 1 Diaenergie | 2025-11-05 | N/A | 8.8 HIGH |
| SQL injection vulnerability exists in GetDIAE_astListParameters. | |||||
| CVE-2024-28045 | 1 Deltaww | 1 Diaenergie | 2025-11-05 | N/A | 4.6 MEDIUM |
| Improper neutralization of input within the affected product could lead to cross-site scripting. | |||||
