First published: Wed Nov 01 2023(Updated: )
The responses for web queries with certain parameters disclose internal path of resources. This information can be used to learn internal structure of the application and to further plot attacks against web servers and deployed web applications.
Credit: cybersecurity@hitachienergy.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hitachienergy Esoms | <=6.3.13 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-5515 is a vulnerability where the responses for web queries with certain parameters disclose the internal path of resources, which can be used to learn the internal structure of the application and launch further attacks.
CVE-2023-5515 has a severity rating of 5.3, which is considered medium.
The Hitachienergy Esoms software version up to and inclusive of 6.3.13 is affected by CVE-2023-5515.
The disclosure of internal path of resources can be used to learn the internal structure of the application and launch targeted attacks against web servers and deployed web applications.
More information about CVE-2023-5515 can be found at https://publisher.hitachienergy.com/preview?DocumentId=8DBD000175&languageCode=en&Preview=true