Fiche vulnérabilité
CVE-2023-0822 : faille élevée deltaww diaenergie (CVSS 8.8)
Description
The affected product DIAEnergie (versions prior to v1.9.03.001) contains improper authorization, which could allow an unauthorized user to bypass authorization and access privileged functionality.
En bref
- Sévérité
- Élevée (CVSS 8.8)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 17 févr. 2023
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- deltaww diaenergie