Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-40338

Опубликовано: 28 янв. 2022
Источник: nvd
CVSS3: 3.7
CVSS3: 5.3
CVSS2: 5
EPSS Низкий

Описание

Hitachi Energy LinkOne product, has a vulnerability due to a web server misconfiguration, that enables debug mode and reveals the full path of the filesystem directory when an attacker generates errors during a query operation. This issue affects: Hitachi Energy LinkOne 3.20; 3.22; 3.23; 3.24; 3.25; 3.26.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:hitachi:linkone:3.20:*:*:*:*:*:*:*
cpe:2.3:a:hitachi:linkone:3.22:*:*:*:*:*:*:*
cpe:2.3:a:hitachi:linkone:3.23:*:*:*:*:*:*:*
cpe:2.3:a:hitachi:linkone:3.24:*:*:*:*:*:*:*
cpe:2.3:a:hitachi:linkone:3.25:*:*:*:*:*:*:*
cpe:2.3:a:hitachi:linkone:3.26:*:*:*:*:*:*:*

EPSS

Процентиль: 47%
0.00237
Низкий

3.7 Low

CVSS3

5.3 Medium

CVSS3

5 Medium

CVSS2

Дефекты

CWE-209

Связанные уязвимости

CVSS3: 5.3
github
около 4 лет назад

Hitachi Energy LinkOne product, has a vulnerability due to a web server misconfiguration, that enables debug mode and reveals the full path of the filesystem directory when an attacker generates errors during a query operation. This issue affects: Hitachi Energy LinkOne 3.20; 3.22; 3.23; 3.24; 3.25; 3.26.

EPSS

Процентиль: 47%
0.00237
Низкий

3.7 Low

CVSS3

5.3 Medium

CVSS3

5 Medium

CVSS2

Дефекты

CWE-209