First published: Mon Jun 14 2021(Updated: )
Information Exposure vulnerability in Hitachi ABB Power Grids eSOMS allows unauthorized user to gain access to report data if the URL used to access the report is discovered. This issue affects: Hitachi ABB Power Grids eSOMS 6.0 versions prior to 6.0.4.2.2; 6.1 versions prior to 6.1.4; 6.3 versions prior to 6.3.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Hitachienergy Esoms | >=6.0<6.0.4.2.2 | |
Hitachienergy Esoms | >=6.1<6.1.4 |
The problem is corrected in the following product versions: eSOMS version 6.0.4.2.2 eSOMS version 6.1.4 eSOMS version 6.3 Hitachi ABB Power Grids recommends that customers apply the update as soon as possible.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-26845 is an information exposure vulnerability in Hitachi ABB Power Grids eSOMS that allows unauthorized users to gain access to report data if the URL used to access the report is discovered.
Hitachi ABB Power Grids eSOMS 6.0 versions prior to 6.0.4.2.2, 6.1 versions prior to 6.1.4, and 6.3 versions are affected by CVE-2021-26845.
The severity of CVE-2021-26845 is high with a severity score of 7.5.
An unauthorized user can gain access to report data in Hitachi ABB Power Grids eSOMS if they discover the URL used to access the report.
To fix CVE-2021-26845 in Hitachi ABB Power Grids eSOMS, update to version 6.0.4.2.2 or above for 6.0 versions, update to version 6.1.4 or above for 6.1 versions, or update to a version higher than 6.3.