RTU500 web interface: An unprivileged user can read user management information. The information cannot be accessed via the RTU500 web user interface but requires further tools like browser development utilities to access them without required privileges.

Project Subscriptions

No data.

Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Tue, 24 Feb 2026 14:00:00 +0000

Type Values Removed Values Added
Weaknesses CWE-287 CWE-280

Tue, 24 Feb 2026 13:30:00 +0000

Type Values Removed Values Added
Description RTU500 web interface: An unprivileged user can read user management information. The information cannot be accessed via the RTU500 web user interface but requires further tools like browser development utilities to access them without required privileges.
Weaknesses CWE-287
References
Metrics cvssV4_0

{'score': 5.3, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: Hitachi Energy

Published:

Updated: 2026-02-24T13:38:30.521Z

Reserved: 2026-02-02T16:28:53.742Z

Link: CVE-2026-1772

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-02-24T14:16:22.180

Modified: 2026-02-24T14:16:22.180

Link: CVE-2026-1772

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses