CVE Vulnerabilities

CVE-2021-40339

Published: Jan 28, 2022 | Modified: Nov 21, 2024
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Configuration vulnerability in Hitachi Energy LinkOne application due to the lack of HTTP Headers, allows an attacker that manages to exploit this vulnerability to retrieve sensitive information. This issue affects: Hitachi Energy LinkOne 3.20; 3.22; 3.23; 3.24; 3.25; 3.26.

Affected Software

NameVendorStart VersionEnd Version
LinkoneHitachi3.20 (including)3.20 (including)
LinkoneHitachi3.22 (including)3.22 (including)
LinkoneHitachi3.23 (including)3.23 (including)
LinkoneHitachi3.24 (including)3.24 (including)
LinkoneHitachi3.25 (including)3.25 (including)
LinkoneHitachi3.26 (including)3.26 (including)

References