PT-2021-20955 · Hitachi Abb Power Grids · Hitachi Abb Power Grids Counterparty Settlement Billing+1
Published
2021-08-20
·
Updated
2023-05-16
·
CVE-2021-35529
CVSS v3.1
7.7
High
| Vector | AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:N |
Name of the Vulnerable Software and Affected Versions:
Hitachi ABB Power Grids Retail Operations versions prior to 5.7.2
Hitachi ABB Power Grids Counterparty Settlement Billing (CSB) versions prior to 5.7.2
Description:
The issue allows an attacker or unauthorized user to access database credentials, shut down the product, and access or alter data due to insufficiently protected credentials in the client environment.
Recommendations:
For Hitachi ABB Power Grids Retail Operations versions prior to 5.7.2, update to a version that includes the fix for this issue.
For Hitachi ABB Power Grids Counterparty Settlement Billing (CSB) versions prior to 5.7.2, update to a version that includes the fix for this issue.
Fix
Insufficiently Protected Credentials
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Hitachi Abb Power Grids Counterparty Settlement Billing
Hitachi Abb Power Grids Retail Operations