Vulnerability CVE-2022-28813


Published: 2022-09-28

Description:
In Carlo Gavazzi UWP3.0 in multiple versions and CPY Car Park Server in Version 2.8.3 a remote, unauthenticated attacker could make use of an SQL-injection to gain access to a volatile temporary database with the current states of the device.

Type:

CWE-89

(Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'))

 References:
https://cert.vde.com/en/advisories/VDE-2022-029/

Copyright 2026, cxsecurity.com

 

Back to Top