PT-2021-20955 · Hitachi Abb Power Grids · Hitachi Abb Power Grids Counterparty Settlement Billing+1

Published

2021-08-20

·

Updated

2023-05-16

·

CVE-2021-35529

CVSS v3.1

7.7

High

VectorAV:N/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions: Hitachi ABB Power Grids Retail Operations versions prior to 5.7.2 Hitachi ABB Power Grids Counterparty Settlement Billing (CSB) versions prior to 5.7.2
Description: The issue allows an attacker or unauthorized user to access database credentials, shut down the product, and access or alter data due to insufficiently protected credentials in the client environment.
Recommendations: For Hitachi ABB Power Grids Retail Operations versions prior to 5.7.2, update to a version that includes the fix for this issue. For Hitachi ABB Power Grids Counterparty Settlement Billing (CSB) versions prior to 5.7.2, update to a version that includes the fix for this issue.

Fix

Insufficiently Protected Credentials

Weakness Enumeration

Related Identifiers

CVE-2021-35529

Affected Products

Hitachi Abb Power Grids Counterparty Settlement Billing
Hitachi Abb Power Grids Retail Operations