CVE-2021-40340

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
28/01/2022
Last modified:
03/02/2022

Description

Information Exposure vulnerability in Hitachi Energy LinkOne application, due to a misconfiguration in the ASP server exposes server and ASP.net information, an attacker that manages to exploit this vulnerability can use the exposed information as a reconnaissance for further exploitation. This issue affects: Hitachi Energy LinkOne 3.20; 3.22; 3.23; 3.24; 3.25; 3.26.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:hitachi:linkone:3.20:*:*:*:*:*:*:*
cpe:2.3:a:hitachi:linkone:3.22:*:*:*:*:*:*:*
cpe:2.3:a:hitachi:linkone:3.23:*:*:*:*:*:*:*
cpe:2.3:a:hitachi:linkone:3.24:*:*:*:*:*:*:*
cpe:2.3:a:hitachi:linkone:3.25:*:*:*:*:*:*:*
cpe:2.3:a:hitachi:linkone:3.26:*:*:*:*:*:*:*