PT-2022-11218 · Hitachi Energy · Hitachi Energy Linkone

Published

2022-01-28

·

Updated

2022-02-03

·

CVE-2021-40339

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Hitachi Energy LinkOne versions 3.20 through 3.26
Description The issue is related to a configuration vulnerability in the Hitachi Energy LinkOne application, specifically due to the lack of HTTP Headers. This allows an attacker to potentially retrieve sensitive information if the vulnerability is exploited.
Recommendations For Hitachi Energy LinkOne versions 3.20 through 3.26, consider implementing proper HTTP Headers to mitigate the risk of sensitive information retrieval.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2021-40339

Affected Products

Hitachi Energy Linkone