First published: Wed Jul 14 2021(Updated: )
Password autocomplete vulnerability in the web application password field of Hitachi ABB Power Grids eSOMS allows attacker to gain access to user credentials that are stored by the browser. This issue affects: Hitachi ABB Power Grids eSOMS version 6.3 and prior versions.
Credit: cybersecurity@hitachi-powergrids.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hitachienergy Esoms | <6.3.1 |
The problem is remediated in eSOMS version 6.3.1.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this password autocomplete vulnerability is CVE-2021-35527.
The affected software of this vulnerability is Hitachi ABB Power Grids eSOMS version 6.3 and prior versions.
The severity of CVE-2021-35527 is high with a CVSS score of 7.5.
This vulnerability allows an attacker to gain access to user credentials stored by the browser through the web application password field.
To mitigate this vulnerability, it is recommended to update to a version higher than 6.3.1 of Hitachi ABB Power Grids eSOMS.