A vulnerability exists in a FOXMAN-UN and UNEM logging component, it only affects systems that use remote authentication to the network elements. If exploited an attacker could obtain confidential information.
List of CPEs:
cpe:2.3:a:hitachienergy:foxman_un:R9C:::::::*
cpe:2.3:a:hitachienergy:foxman_un:R10C:::::::*
cpe:2.3:a:hitachienergy:foxman_un:R11A:::::::*
cpe:2.3:a:hitachienergy:foxman_un:R11B:::::::*
cpe:2.3:a:hitachienergy:foxman_un:R14A:::::::*
cpe:2.3:a:hitachienergy:foxman_un:R14B:::::::*
cpe:2.3:a:hitachienergy:foxman_un:R15A:::::::*
cpe:2.3:a:hitachienergy:foxman_un:R15B:::::::*
cpe:2.3:a:hitachienergy:foxman_un:R16A:::::::*
cpe:2.3:a:hitachienergy:unem:R9C:::::::*
cpe:2.3:a:hitachienergy: unem :R10C:::::::*
cpe:2.3:a:hitachienergy: unem :R11A:::::::*
cpe:2.3:a:hitachienergy: unem :R11B:::::::*
cpe:2.3:a:hitachienergy: unem :R14A:::::::*
cpe:2.3:a:hitachienergy: unem :R14B:::::::*
cpe:2.3:a:hitachienergy: unem :R15A:::::::*
cpe:2.3:a:hitachienergy: unem :R15B:::::::*
cpe:2.3:a:hitachienergy: unem :R16A:::::::*
The product does not neutralize or incorrectly neutralizes output that is written to logs.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Foxman-un | Hitachienergy | r9c (including) | r9c (including) |
Foxman-un | Hitachienergy | r10c (including) | r10c (including) |
Foxman-un | Hitachienergy | r11a (including) | r11a (including) |
Foxman-un | Hitachienergy | r11b (including) | r11b (including) |
Foxman-un | Hitachienergy | r14a (including) | r14a (including) |
Foxman-un | Hitachienergy | r14b (including) | r14b (including) |
Foxman-un | Hitachienergy | r15a (including) | r15a (including) |
Foxman-un | Hitachienergy | r15b (including) | r15b (including) |
Foxman-un | Hitachienergy | r16a (including) | r16a (including) |
Unem | Hitachienergy | r9c (including) | r9c (including) |
Unem | Hitachienergy | r10c (including) | r10c (including) |
Unem | Hitachienergy | r11a (including) | r11a (including) |
Unem | Hitachienergy | r11b (including) | r11b (including) |
Unem | Hitachienergy | r14a (including) | r14a (including) |
Unem | Hitachienergy | r14b (including) | r14b (including) |
Unem | Hitachienergy | r15a (including) | r15a (including) |
Unem | Hitachienergy | r15b (including) | r15b (including) |
Unem | Hitachienergy | r16a (including) | r16a (including) |
This can allow an attacker to forge log entries or inject malicious content into logs. Log forging vulnerabilities occur when: