AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2022-26666

CRITICAL · CVSS 9.8 EPSS 1.20%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2022-03-29 · Last synced 2026-08-04

CyberRota Analysis

This is a critical severity vulnerability with a CVSS score of 9.8. It involves a SQL injection risk.

CVE
CVE-2022-26666
Severity
CRITICAL
CVSS
9.8
EPSS
1.20%

Original NVD Description

Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) has a blind SQL injection vulnerability exists in HandlerECC.ashx. This allows an attacker to inject arbitrary SQL queries, retrieve and modify database contents, and execute system commands.

Related CVEs

Other vulnerabilities affecting the same vendor(s)