Home
MEDIUM: 5.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:NDefault status
unaffected
12.7.1 (custom)
affected
13.5.1 (custom)
affected
13.6.1 (custom)
affected
13.7.1 (custom)
affected
13.8.1 (custom)
affected
Description
RTU500 web interface: An unprivileged user can read user management information. The information cannot be accessed via the RTU500 web user interface but requires further tools like browser development utilities to access them without required privileges.
Problem types
CWE-280 Improper Handling of Insufficient Permissions or Privileges
Product status
12.7.1 (custom)
13.5.1 (custom)
13.6.1 (custom)
13.7.1 (custom)
13.8.1 (custom)
References
publisher.hitachienergy.com/...DocumentPartId=&Action=Launch