PT-2023-12361 · Hitachi Energy · Hitachi Energy Unem+1

CVE-2021-40341

·

Publicado

2023-01-05

·

Atualizado

2023-02-06

CVSS v3.1

7.1

Alta

VetorAV:L/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Hitachi Energy FOXMAN-UN versions R9C through R16A Hitachi Energy UNEM versions R9C through R16A
Description The DES cipher, which has inadequate encryption strength, is used in Hitachi Energy FOXMAN-UN to encrypt user credentials used to access the Network Elements. Successful exploitation allows sensitive information to be decrypted easily.
Recommendations For Hitachi Energy FOXMAN-UN versions R9C through R16A, consider disabling the DES cipher encryption until a patch is available. For Hitachi Energy UNEM versions R9C through R16A, consider disabling the DES cipher encryption until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Inadequate Encryption Strength

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2021-40341

Produtos afetados

Hitachi Energy Foxman-Un
Hitachi Energy Unem