Back to Database
Status published
High
CVE-2021-23228
Delta Electronics DIAEnergie (Update A)
Vulnerability Description
DIAEnergie Version 1.7.5 and prior is vulnerable to a reflected cross-site scripting attack through error pages that are returned by “.NET Request.QueryString”.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2021-23228
Credits & Attribution
No credits recorded in the NVD database.
More from Delta Electronics
View All →CVE-2025-62582
DIAView - Authentication Bypass Vulnerability
Critical
9.8
CVE-2025-62581
DIAView - Authentication Bypass Vulnerability
Critical
9.8
CVE-2025-62580
ASDA-Soft Stack-based Buffer Overflow Vulnerability
High
7.8
CVE-2025-62579
ASDA-Soft Stack-based Buffer Overflow Vulnerability
High
7.8
CVE-2025-62578
DVP-12SE - Modbus/TCP Cleartext Transmission of Sensitive Information
High
7.2
Affected Vendor
Delta Electronics
View all reports →Affected Software
DIAEnergie
Vulnerable Versions:
All
Timeline
Official Publish:
December 22nd, 2021
Last Modified:
September 17th, 2024
Added to House:
July 21st, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N