Storage of Sensitive Information Vulnerability in Hitachi ABB Power Grids System Data Manager – SDM600 Product
CVE-2021-35526
6.3MEDIUM
Key Information:
- Vendor
- Hitachi Abb Power Grids
- Status
- System Data Manager – Sdm600
- Vendor
- CVE Published:
- 31 August 2021
Summary
Backup file without encryption vulnerability is found in Hitachi ABB Power Grids System Data Manager – SDM600 allows attacker to gain access to sensitive information. This issue affects: Hitachi ABB Power Grids System Data Manager – SDM600 1.2 versions prior to FP2 HF6 (Build Nr. 1.2.14002.257).
Affected Version(s)
System Data Manager – SDM600 prior to Build Nr. 1.2.14002.257 1.2
References
CVSS V3.1
Score:
6.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved