VYPR
Low severity3.7NVD Advisory· Published Jan 28, 2022· Updated Jun 17, 2026

CVE-2021-40338

CVE-2021-40338

Description

Hitachi Energy LinkOne product, has a vulnerability due to a web server misconfiguration, that enables debug mode and reveals the full path of the filesystem directory when an attacker generates errors during a query operation. This issue affects: Hitachi Energy LinkOne 3.20; 3.22; 3.23; 3.24; 3.25; 3.26.

Affected products

8
  • Hitachi/LinkOne7 versions
    cpe:2.3:a:hitachi:linkone:3.20:*:*:*:*:*:*:*+ 6 more
    • cpe:2.3:a:hitachi:linkone:3.20:*:*:*:*:*:*:*
    • cpe:2.3:a:hitachi:linkone:3.22:*:*:*:*:*:*:*
    • cpe:2.3:a:hitachi:linkone:3.23:*:*:*:*:*:*:*
    • cpe:2.3:a:hitachi:linkone:3.24:*:*:*:*:*:*:*
    • cpe:2.3:a:hitachi:linkone:3.25:*:*:*:*:*:*:*
    • cpe:2.3:a:hitachi:linkone:3.26:*:*:*:*:*:*:*
    • (no CPE)range: 3.20, 3.22, 3.23, 3.24, 3.25, 3.26
  • Hitachi Energy/LinkOnedescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.