Vulnerabilities > Hitachienergy > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-04-02 CVE-2019-19001 Improper Restriction of Rendered UI Layers or Frames vulnerability in Hitachienergy Esoms
For ABB eSOMS versions 4.0 to 6.0.2, the X-Frame-Options header is not configured in HTTP response.
network
low complexity
hitachienergy CWE-1021
6.5
2020-04-02 CVE-2019-19000 Information Exposure vulnerability in Hitachienergy Esoms
For ABB eSOMS 4.0 to 6.0.3, the Cache-Control and Pragma HTTP header(s) have not been properly configured within the application response.
network
low complexity
hitachienergy CWE-200
6.5
2017-11-06 CVE-2017-14025 Improper Input Validation vulnerability in Hitachienergy Fox515T Firmware 1.0
An Improper Input Validation issue was discovered in ABB FOX515T release 1.0.
local
low complexity
hitachienergy CWE-20
5.5
2017-10-18 CVE-2017-15583 Information Exposure vulnerability in Hitachienergy Fox515T Firmware
The embedded web server on ABB Fox515T 1.0 devices is vulnerable to Local File Inclusion.
network
low complexity
hitachienergy CWE-200
6.5