Vulnerabilities > Hitachienergy > Microscada X Sys600 > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-08-27 CVE-2024-7941 Open Redirect vulnerability in Hitachienergy Microscada X Sys600 10.5
An HTTP parameter may contain a URL value and could cause the web application to redirect the request to the specified URL. By modifying the URL value to a malicious site, an attacker may successfully launch a phishing scam and steal user credentials.
network
low complexity
hitachienergy CWE-601
4.3
2022-09-14 CVE-2022-1778 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Hitachienergy Microscada X Sys600
Improper Input Validation vulnerability in Hitachi Energy MicroSCADA X SYS600 while reading a specific configuration file causes a buffer-overflow that causes a failure to start the SYS600.
local
low complexity
hitachienergy CWE-119
4.4