Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-40340

Опубликовано: 28 янв. 2022
Источник: nvd
CVSS3: 3.7
CVSS3: 7.5
CVSS2: 5
EPSS Низкий

Описание

Information Exposure vulnerability in Hitachi Energy LinkOne application, due to a misconfiguration in the ASP server exposes server and ASP.net information, an attacker that manages to exploit this vulnerability can use the exposed information as a reconnaissance for further exploitation. This issue affects: Hitachi Energy LinkOne 3.20; 3.22; 3.23; 3.24; 3.25; 3.26.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:hitachi:linkone:3.20:*:*:*:*:*:*:*
cpe:2.3:a:hitachi:linkone:3.22:*:*:*:*:*:*:*
cpe:2.3:a:hitachi:linkone:3.23:*:*:*:*:*:*:*
cpe:2.3:a:hitachi:linkone:3.24:*:*:*:*:*:*:*
cpe:2.3:a:hitachi:linkone:3.25:*:*:*:*:*:*:*
cpe:2.3:a:hitachi:linkone:3.26:*:*:*:*:*:*:*

EPSS

Процентиль: 53%
0.00307
Низкий

3.7 Low

CVSS3

7.5 High

CVSS3

5 Medium

CVSS2

Дефекты

CWE-200

Связанные уязвимости

github
около 4 лет назад

Information Exposure vulnerability in Hitachi Energy LinkOne application, due to a misconfiguration in the ASP server exposes server and ASP.net information, an attacker that manages to exploit this vulnerability can use the exposed information as a reconnaissance for further exploitation. This issue affects: Hitachi Energy LinkOne 3.20; 3.22; 3.23; 3.24; 3.25; 3.26.

EPSS

Процентиль: 53%
0.00307
Низкий

3.7 Low

CVSS3

7.5 High

CVSS3

5 Medium

CVSS2

Дефекты

CWE-200