Insufficiently Protected Credentials vulnerability in client environment of Hitachi ABB Power Grids Retail Operations and Counterparty Settlement Billing (CSB) allows an attacker or unauthorized user to access database credentials, shut down the product and access or alter. This issue affects: Hitachi ABB Power Grids Retail Operations version 5.7.2 and prior versions. Hitachi ABB Power Grids Counterparty Settlement Billing (CSB) version 5.7.2 and prior versions.
References
Link | Resource |
---|---|
https://search.abb.com/library/Download.aspx?DocumentID=9AKK107992A5821&LanguageCode=en&DocumentPartId=&Action=Launch | Vendor Advisory |
https://search.abb.com/library/Download.aspx?DocumentID=9AKK107992A5933&LanguageCode=en&DocumentPartId=&Action=Launch | Vendor Advisory |
https://us-cert.cisa.gov/ics/advisories/icsa-21-236-02 | Third Party Advisory US Government Resource |
https://search.abb.com/library/Download.aspx?DocumentID=9AKK107992A5821&LanguageCode=en&DocumentPartId=&Action=Launch | Vendor Advisory |
https://search.abb.com/library/Download.aspx?DocumentID=9AKK107992A5933&LanguageCode=en&DocumentPartId=&Action=Launch | Vendor Advisory |
https://us-cert.cisa.gov/ics/advisories/icsa-21-236-02 | Third Party Advisory US Government Resource |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 06:12
Type | Values Removed | Values Added |
---|---|---|
References | () https://search.abb.com/library/Download.aspx?DocumentID=9AKK107992A5821&LanguageCode=en&DocumentPartId=&Action=Launch - Vendor Advisory | |
References | () https://search.abb.com/library/Download.aspx?DocumentID=9AKK107992A5933&LanguageCode=en&DocumentPartId=&Action=Launch - Vendor Advisory | |
References | () https://us-cert.cisa.gov/ics/advisories/icsa-21-236-02 - Third Party Advisory, US Government Resource | |
CVSS |
v2 : v3 : |
v2 : 6.5
v3 : 7.7 |
Information
Published : 2021-08-20 18:15
Updated : 2024-11-21 06:12
NVD link : CVE-2021-35529
Mitre link : CVE-2021-35529
CVE.ORG link : CVE-2021-35529
JSON object : View
Products Affected
hitachienergy
- counterparty_settlement_and_billing
- retail_operations
CWE
CWE-522
Insufficiently Protected Credentials