Malicious Redirection Vulnerability
CVE-2024-7941
4.3MEDIUM
What is CVE-2024-7941?
A vulnerability exists within the web application of Hitachi Energy products, where an HTTP parameter containing a URL may be exploited. An attacker can manipulate this parameter to redirect users to a malicious site. This redirection poses a significant risk as it can lead to phishing scams, ultimately enabling attackers to harvest user credentials and sensitive information unsuspecting users might enter. Proper validation and sanitization of URL parameters are crucial to mitigate these risks and protect users from potential attacks.
Affected Version(s)
MicroSCADA SYS600 10.0 <= 10.5