漏洞描述 Delta Electronics DIAEnergie是一款工业能源管理系统。Delta Electronics DIAEnergie存在SQL注入漏洞,该漏洞是由于应用对用户发送的RecalculateScript消息验证不当造成的。
相关漏洞推荐 POC CVE-2011-3600: Apache OFBiz - XML External Entity Injection POC CVE-2017-17762: Episerver 7 - Blind XML External Entity Injection POC CVE-2018-6961: VMware NSX SD-WAN Edge - Command Injection POC CVE-2021-20617: Acmailer - Improper Access Control to OS Command Injection POC CVE-2022-27924: Zimbra Collaboration Suite - Memcached Command Injection POC CVE-2024-5057: WordPress Easy Digital Downloads <= 3.2.12 - SQL Injection POC CVE-2025-56266: Avigilon ACM - Host Header Injection POC CVE-2025-68613: n8n - Remote Code Execution via Expression Injection POC CVE-2025-8848: LibreChat <= 0.7.9 - HTML Injection via Accept-Language Header POC CVE-2024-28253: OpenMetaData - SpEL Injection in PUT /api/v1/policies POC CVE-2022-31101: Prestashop Blockwishlist 2.1.0 SQL Injection POC CVE-2025-10210: ChanCMS <= 3.3.0 - SQL Injection POC CVE-2025-58360: GeoServer - XML External Entity Injection