Hitachi Energy LinkOne product, has a vulnerability due to a web server misconfiguration, that enables debug mode and reveals the full path of the filesystem directory when an attacker generates errors during a query operation. This issue affects: Hitachi Energy LinkOne 3.20; 3.22; 3.23; 3.24; 3.25; 3.26.
Advisories
Source ID Title
EUVD EUVD EUVD-2021-27517 Hitachi Energy LinkOne product, has a vulnerability due to a web server misconfiguration, that enables debug mode and reveals the full path of the filesystem directory when an attacker generates errors during a query operation. This issue affects: Hitachi Energy LinkOne 3.20; 3.22; 3.23; 3.24; 3.25; 3.26.
Fixes

Solution

For each version, apply security patch or update to LinkOne v3.27


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: Hitachi Energy

Published:

Updated: 2024-09-16T22:40:31.929Z

Reserved: 2021-08-31T00:00:00

Link: CVE-2021-40338

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-01-28T20:15:11.190

Modified: 2024-11-21T06:23:53.737

Link: CVE-2021-40338

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses