Home

Description

A vulnerability exists in Asset Suite for an authenticated user to manipulate the content of performance related log data or to inject crafted data in logfile for potentially carrying out further malicious attacks. Performance logging is typically enabled for troubleshooting purposes while resolving application performance related issues.

PUBLISHED Reserved 2025-09-10 | Published 2025-09-30 | Updated 2025-09-30 | Assigner Hitachi Energy




MEDIUM: 6.0CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N

Problem types

CWE-117 Improper Output Neutralization for Logs

Product status

Default status
unaffected

9.0
affected

References

publisher.hitachienergy.com/...DocumentPartId=&Action=Launch vendor-advisory

cve.org (CVE-2025-10217)

nvd.nist.gov (CVE-2025-10217)

Download JSON