CVE-2021-35527: Password Autocomplete Vulnerability in Hitachi ABB Power Grids eSOMS Application
Password autocomplete vulnerability in the web application password field of Hitachi ABB Power Grids eSOMS allows attacker to gain access to user credentials that are stored by the browser. This issue affects: Hitachi ABB Power Grids eSOMS version 6.3 and prior versions.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the vulnerability ID for this password autocomplete vulnerability?
The vulnerability ID for this password autocomplete vulnerability is CVE-2021-35527.
What is the affected software of this vulnerability?
The affected software of this vulnerability is Hitachi ABB Power Grids eSOMS version 6.3 and prior versions.
What is the severity of CVE-2021-35527?
The severity of CVE-2021-35527 is high with a CVSS score of 7.5.
How does this vulnerability work?
This vulnerability allows an attacker to gain access to user credentials stored by the browser through the web application password field.
Is there a fix available for CVE-2021-35527?
To mitigate this vulnerability, it is recommended to update to a version higher than 6.3.1 of Hitachi ABB Power Grids eSOMS.