CVE-2021-35529

Insufficiently Protected Credentials vulnerability in client environment of Hitachi ABB Power Grids Retail Operations and Counterparty Settlement Billing (CSB) allows an attacker or unauthorized user to access database credentials, shut down the product and access or alter. This issue affects: Hitachi ABB Power Grids Retail Operations version 5.7.2 and prior versions. Hitachi ABB Power Grids Counterparty Settlement Billing (CSB) version 5.7.2 and prior versions.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:hitachienergy:counterparty_settlement_and_billing:*:*:*:*:*:*:*:*
cpe:2.3:a:hitachienergy:retail_operations:*:*:*:*:*:*:*:*

History

16 May 2023, 20:09

Type Values Removed Values Added
CPE cpe:2.3:a:hitachiabb-powergrids:counterparty_settlement_and_billing:*:*:*:*:*:*:*:* cpe:2.3:a:hitachienergy:counterparty_settlement_and_billing:*:*:*:*:*:*:*:*

28 Nov 2021, 23:33

Type Values Removed Values Added
References (CONFIRM) https://us-cert.cisa.gov/ics/advisories/icsa-21-236-02 - (CONFIRM) https://us-cert.cisa.gov/ics/advisories/icsa-21-236-02 - Third Party Advisory, US Government Resource

19 Nov 2021, 12:27

Type Values Removed Values Added
CPE cpe:2.3:a:hitachiabb-powergrids:retail_operations:*:*:*:*:*:*:*:* cpe:2.3:a:hitachienergy:retail_operations:*:*:*:*:*:*:*:*

08 Oct 2021, 17:15

Type Values Removed Values Added
References
  • (CONFIRM) https://us-cert.cisa.gov/ics/advisories/icsa-21-236-02 -

30 Aug 2021, 12:47

Type Values Removed Values Added
CPE cpe:2.3:a:hitachiabb-powergrids:counterparty_settlement_and_billing:*:*:*:*:*:*:*:*
cpe:2.3:a:hitachiabb-powergrids:retail_operations:*:*:*:*:*:*:*:*
CWE CWE-522
CVSS v2 : unknown
v3 : unknown
v2 : 6.5
v3 : 7.2
References (CONFIRM) https://search.abb.com/library/Download.aspx?DocumentID=9AKK107992A5933&LanguageCode=en&DocumentPartId=&Action=Launch - (CONFIRM) https://search.abb.com/library/Download.aspx?DocumentID=9AKK107992A5933&LanguageCode=en&DocumentPartId=&Action=Launch - Vendor Advisory
References (CONFIRM) https://search.abb.com/library/Download.aspx?DocumentID=9AKK107992A5821&LanguageCode=en&DocumentPartId=&Action=Launch - (CONFIRM) https://search.abb.com/library/Download.aspx?DocumentID=9AKK107992A5821&LanguageCode=en&DocumentPartId=&Action=Launch - Vendor Advisory

20 Aug 2021, 19:18

Type Values Removed Values Added
New CVE

Information

Published : 2021-08-20 18:15

Updated : 2024-02-04 21:47


NVD link : CVE-2021-35529

Mitre link : CVE-2021-35529

CVE.ORG link : CVE-2021-35529


JSON object : View

Products Affected

hitachienergy

  • retail_operations
  • counterparty_settlement_and_billing
CWE
CWE-522

Insufficiently Protected Credentials