Known Vulnerabilities for Esoms by Abb
Listed below are 10 of the newest known vulnerabilities associated with "Esoms" by "Abb".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-35527 | Password autocomplete vulnerability in the web application password field of Hitachi ABB Power Grids eSOMS allows attacker to... | 7.5 - HIGH | 2021-07-14 | 2023-05-16 |
| CVE-2021-26845 | Information Exposure vulnerability in Hitachi ABB Power Grids eSOMS allows unauthorized user to gain access to report data if... | 7.5 - HIGH | 2021-06-14 | 2023-05-16 |
| CVE-2019-19092 | ABB eSOMS versions 4.0 to 6.0.3 use ASP.NET Viewstate without Message Authentication Code (MAC). Alterations to Viewstate mig... | 3.5 - LOW | 2020-04-02 | 2023-05-16 |
| CVE-2019-19091 | For ABB eSOMS versions 4.0 to 6.0.3, HTTPS responses contain comments with sensitive information about the application. An at... | 4.3 - MEDIUM | 2020-04-02 | 2023-05-16 |
| CVE-2019-19090 | For ABB eSOMS versions 4.0 to 6.0.2, the Secure Flag is not set in the HTTP response header. Unencrypted connections might ac... | 3.5 - LOW | 2020-04-02 | 2023-05-16 |
| CVE-2019-19089 | For ABB eSOMS versions 4.0 to 6.0.3, the X-Content-Type-Options Header is missing in the HTTP response, potentially causing t... | 6.1 - MEDIUM | 2020-04-02 | 2023-05-16 |
| CVE-2019-19003 | For ABB eSOMS versions 4.0 to 6.0.2, the HTTPOnly flag is not set. This can allow Javascript to access the cookie contents, w... | 6.1 - MEDIUM | 2020-04-02 | 2023-05-16 |
| CVE-2019-19002 | For ABB eSOMS versions 4.0 to 6.0.2, the X-XSS-Protection HTTP response header is not set in responses from the web server. F... | 5.4 - MEDIUM | 2020-04-02 | 2023-05-16 |
| CVE-2019-19001 | For ABB eSOMS versions 4.0 to 6.0.2, the X-Frame-Options header is not configured in HTTP response. This can potentially allo... | 6.5 - MEDIUM | 2020-04-02 | 2023-05-16 |
| CVE-2019-19000 | For ABB eSOMS 4.0 to 6.0.3, the Cache-Control and Pragma HTTP header(s) have not been properly configured within the applicat... | 6.5 - MEDIUM | 2020-04-02 | 2023-05-16 |