CVE-2021-35527

Password autocomplete vulnerability in the web application password field of Hitachi ABB Power Grids eSOMS allows attacker to gain access to user credentials that are stored by the browser. This issue affects: Hitachi ABB Power Grids eSOMS version 6.3 and prior versions.
Configurations

Configuration 1 (hide)

cpe:2.3:a:hitachienergy:esoms:*:*:*:*:*:*:*:*

History

16 May 2023, 20:21

Type Values Removed Values Added
CPE cpe:2.3:a:abb:esoms:*:*:*:*:*:*:*:* cpe:2.3:a:hitachienergy:esoms:*:*:*:*:*:*:*:*
First Time Hitachienergy
Hitachienergy esoms

20 Jul 2021, 19:29

Type Values Removed Values Added
References (CONFIRM) https://search.abb.com/library/Download.aspx?DocumentID=9AKK107992A0957&LanguageCode=en&DocumentPartId=&Action=Launch - (CONFIRM) https://search.abb.com/library/Download.aspx?DocumentID=9AKK107992A0957&LanguageCode=en&DocumentPartId=&Action=Launch - Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : 5.0
v3 : 7.5
CWE CWE-522
CPE cpe:2.3:a:abb:esoms:*:*:*:*:*:*:*:*

14 Jul 2021, 14:20

Type Values Removed Values Added
New CVE

Information

Published : 2021-07-14 14:15

Updated : 2023-12-10 13:55


NVD link : CVE-2021-35527

Mitre link : CVE-2021-35527

CVE.ORG link : CVE-2021-35527


JSON object : View

Products Affected

hitachienergy

  • esoms
CWE
CWE-522

Insufficiently Protected Credentials

CWE-200

Exposure of Sensitive Information to an Unauthorized Actor