CVE-2023-5515

MEDIUM

HitachiEnergy eSOMs < 6.3.13 - Information Disclosure via Web Query Parameter

Title source: llm
STIX 2.1

Description

The responses for web queries with certain parameters disclose internal path of resources. This information can be used to learn internal structure of the application and to further plot attacks against web servers and deployed web applications.

References (1)

Core 1

Scores

CVSS v3 5.3
EPSS 0.0038
EPSS Percentile 29.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-200
Status published
Products (1)
hitachienergy/esoms < 6.3.13
Published Nov 01, 2023
Tracked Since Feb 18, 2026