Improper Access Control vulnerability in the application authentication and authorization of Hitachi Energy Retail Operations, Counterparty Settlement and Billing (CSB) allows an attacker to execute a modified signed Java Applet JAR file. A successful exploitation may lead to data extraction or modification of data inside the application. This issue affects: Hitachi Energy Retail Operations 5.7.3 and prior versions. Hitachi Energy Counterparty Settlement and Billing (CSB) 5.7.3 prior versions.
2021-11-17T18:15:08.070
2024-11-21T06:12:26.993
Modified
CVSSv3.1: 7.2 (HIGH)
AV:L/AC:L/Au:N/C:P/I:P/A:N
3.9
4.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | hitachienergy | counterparty_settlements_and_billing | ≤ 5.7.3 | Yes |
Application | hitachienergy | retail_operations | ≤ 5.7.3 | Yes |