Insufficiently Protected Credentials vulnerability in client environment of Hitachi ABB Power Grids Retail Operations and Counterparty Settlement Billing (CSB) allows an attacker or unauthorized user to access database credentials, shut down the product and access or alter. This issue affects: Hitachi ABB Power Grids Retail Operations version 5.7.2 and prior versions. Hitachi ABB Power Grids Counterparty Settlement Billing (CSB) version 5.7.2 and prior versions.
References
Link | Resource |
---|---|
https://search.abb.com/library/Download.aspx?DocumentID=9AKK107992A5821&LanguageCode=en&DocumentPartId=&Action=Launch | Vendor Advisory |
https://search.abb.com/library/Download.aspx?DocumentID=9AKK107992A5933&LanguageCode=en&DocumentPartId=&Action=Launch | Vendor Advisory |
https://us-cert.cisa.gov/ics/advisories/icsa-21-236-02 | Third Party Advisory US Government Resource |
Configurations
Configuration 1 (hide)
|
History
16 May 2023, 20:09
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:hitachienergy:counterparty_settlement_and_billing:*:*:*:*:*:*:*:* |
28 Nov 2021, 23:33
Type | Values Removed | Values Added |
---|---|---|
References | (CONFIRM) https://us-cert.cisa.gov/ics/advisories/icsa-21-236-02 - Third Party Advisory, US Government Resource |
19 Nov 2021, 12:27
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:hitachienergy:retail_operations:*:*:*:*:*:*:*:* |
08 Oct 2021, 17:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
30 Aug 2021, 12:47
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:hitachiabb-powergrids:counterparty_settlement_and_billing:*:*:*:*:*:*:*:* cpe:2.3:a:hitachiabb-powergrids:retail_operations:*:*:*:*:*:*:*:* |
|
CWE | CWE-522 | |
CVSS |
v2 : v3 : |
v2 : 6.5
v3 : 7.2 |
References | (CONFIRM) https://search.abb.com/library/Download.aspx?DocumentID=9AKK107992A5933&LanguageCode=en&DocumentPartId=&Action=Launch - Vendor Advisory | |
References | (CONFIRM) https://search.abb.com/library/Download.aspx?DocumentID=9AKK107992A5821&LanguageCode=en&DocumentPartId=&Action=Launch - Vendor Advisory |
20 Aug 2021, 19:18
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2021-08-20 18:15
Updated : 2024-02-04 21:47
NVD link : CVE-2021-35529
Mitre link : CVE-2021-35529
CVE.ORG link : CVE-2021-35529
JSON object : View
Products Affected
hitachienergy
- retail_operations
- counterparty_settlement_and_billing
CWE
CWE-522
Insufficiently Protected Credentials