VYPR
Vendor

Hitachi ABB Power Grids

Products
8
CVEs
8
Across products
10
Status
Private

Products

8

Recent CVEs

8
  • CVE-2021-35529HigAug 20, 2021
    risk 0.50cvss 7.7epss 0.01

    Insufficiently Protected Credentials vulnerability in client environment of Hitachi ABB Power Grids Retail Operations and Counterparty Settlement Billing (CSB) allows an attacker or unauthorized user to access database credentials, shut down the product and access or alter. This…

  • CVE-2021-35527HigJul 14, 2021
    risk 0.49cvss 7.5epss 0.01

    Password autocomplete vulnerability in the web application password field of Hitachi ABB Power Grids eSOMS allows attacker to gain access to user credentials that are stored by the browser. This issue affects: Hitachi ABB Power Grids eSOMS version 6.3 and prior versions.

  • CVE-2021-27196HigJun 14, 2021
    risk 0.49cvss 7.5epss 0.02

    Improper Input Validation vulnerability in Hitachi ABB Power Grids Relion 670 Series, Relion 670/650 Series, Relion 670/650/SAM600-IO, Relion 650, REB500, RTU500 Series, FOX615 (TEGO1), MSM, GMS600, PWC600 allows an attacker with access to the IEC 61850 network with knowledge of…

  • CVE-2021-26845HigJun 14, 2021
    risk 0.49cvss 7.5epss 0.01

    Information Exposure vulnerability in Hitachi ABB Power Grids eSOMS allows unauthorized user to gain access to report data if the URL used to access the report is discovered. This issue affects: Hitachi ABB Power Grids eSOMS 6.0 versions prior to 6.0.4.2.2; 6.1 versions prior to…

  • CVE-2021-35526MedSep 8, 2021
    risk 0.41cvss 6.3epss 0.00

    Backup file without encryption vulnerability is found in Hitachi ABB Power Grids System Data Manager – SDM600 allows attacker to gain access to sensitive information. This issue affects: Hitachi ABB Power Grids System Data Manager – SDM600 1.2 versions prior to FP2 HF6…

  • CVE-2021-27887MedJun 14, 2021
    risk 0.41cvss 6.3epss 0.01

    Cross-site Scripting (XSS) vulnerability in the main dashboard of Ellipse APM versions allows an authenticated user or integrated application to inject malicious data into the application that can then be executed in a victim’s browser. This issue affects: Hitachi ABB Power…

  • CVE-2021-27416MedMar 11, 2022
    risk 0.36cvss 5.5epss 0.01

    An attacker could exploit this vulnerability in Hitachi ABB Power Grids Ellipse Enterprise Asset Management (EAM) versions prior to and including 9.0.25 by tricking a user to click on a link containing malicious code that would then be run by the web browser. This can result in…

  • CVE-2021-27414MedMar 11, 2022
    risk 0.36cvss 5.5epss 0.01

    An attacker could trick a user of Hitachi ABB Power Grids Ellipse Enterprise Asset Management (EAM) versions prior to and including 9.0.25 into visiting a malicious website posing as a login page for the Ellipse application and gather authentication credentials.