A vulnerability classified as critical was found in Altenergy Power Control Software up to 20241108. This vulnerability affects the function get_status_zigbee of the file /index.php/display/status_zigbee. The manipulation of the argument date leads to sql injection. The attack can be initiated remotely.
id: CVE-2024-11305
info:
name: Altenergy Power Control Software - SQL Injection
author: s4e-io
...