CVE-2021-40337

MEDIUM

Hitachi Energy LinkOne - Cross-Site Scripting

Title source: llm
STIX 2.1

Description

Cross-site Scripting (XSS) vulnerability in Hitachi Energy LinkOne allows an attacker that manages to exploit the vulnerability can take advantage to exploit multiple web attacks and stole sensitive information. This issue affects: Hitachi Energy LinkOne 3.20; 3.22; 3.23; 3.24; 3.25; 3.26.

References (1)

Core 1

Scores

CVSS v3 4.2
EPSS 0.0029
EPSS Percentile 52.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:N

Details

CWE
CWE-79
Status published
Products (6)
hitachi/linkone 3.20
hitachi/linkone 3.22
hitachi/linkone 3.23
hitachi/linkone 3.24
hitachi/linkone 3.25
hitachi/linkone 3.26
Published Jan 25, 2022
Tracked Since Feb 18, 2026