Description
Configuration vulnerability in Hitachi Energy LinkOne application due to the lack of HTTP Headers, allows an attacker that manages to exploit this vulnerability to retrieve sensitive information. This issue affects: Hitachi Energy LinkOne 3.20; 3.22; 3.23; 3.24; 3.25; 3.26.
References (1)
Core 1
Core References
Vendor Advisory x_refsource_confirm
https://search.abb.com/library/Download.aspx?DocumentID=8DBD000079&LanguageCode=en&DocumentPartId=&Action=Launch
Scores
CVSS v3
3.7
EPSS
0.0031
EPSS Percentile
54.0%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N
Details
Status
published
Products (6)
hitachi/linkone
3.20
hitachi/linkone
3.22
hitachi/linkone
3.23
hitachi/linkone
3.24
hitachi/linkone
3.25
hitachi/linkone
3.26
Published
Jan 28, 2022
Tracked Since
Feb 18, 2026