First published: Fri Aug 20 2021(Updated: )
Insufficiently Protected Credentials vulnerability in client environment of Hitachi ABB Power Grids Retail Operations and Counterparty Settlement Billing (CSB) allows an attacker or unauthorized user to access database credentials, shut down the product and access or alter. This issue affects: Hitachi ABB Power Grids Retail Operations version 5.7.2 and prior versions. Hitachi ABB Power Grids Counterparty Settlement Billing (CSB) version 5.7.2 and prior versions.
Credit: cybersecurity@hitachi-powergrids.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hitachienergy Counterparty Settlement And Billing | <5.7.3 | |
Hitachienergy Retail Operations | <5.7.3 | |
Hitachi ABB Power Grids Retail Operations: All Versions 5.7.2 and prior | ||
Hitachi ABB Power Grids Counterparty Settlement and Billing (CSB): All Versions 5.7.2 and prior |
- Vulnerability is remediated in Retail Operations v5.7.3 - Vulnerability is remediated in CSB v5.7.3
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2021-35529.
The title of this vulnerability is 'Insufficiently Protected Credentials vulnerability in client environment of Hitachi ABB Power Grids Retail Operations and Counterparty Settlement Billing (CSB)'.
The severity of CVE-2021-35529 is high with a CVSS score of 7.2.
The software affected by CVE-2021-35529 is Hitachi ABB Power Grids Retail Operations and Counterparty Settlement Billing (CSB) and Hitachi ABB Power Grids Retail Operations, versions up to 5.7.3.
An attacker can exploit CVE-2021-35529 to access database credentials, shut down the product, and access or alter data in the client environment.