Hitachi Energy TRM Tracking

Vulnerabilities in Hitachi Energy's TRMTracker product can allow remote command execution and disclosure of sensitive information. Hitachi Energy recommends updating and following security practices to protect industrial control systems.

martes, 8 de abril de 2025 • 1 min read • Q2BSTUDIO Team

Artificial-Intelligence-

Vulnerabilities found in Hitachi Energy's TRMTracker product, with a CVSS v4 score of 6.9, could allow an attacker to execute limited remote commands, poison the web cache, or disclose and modify sensitive information. These affect versions 6.2.04 and earlier, as well as versions 6.3.0 and 6.3.01 of TRMTracker. Vulnerabilities include LDAP injection, injection into output used by a downstream component, and cross-site scripting. Hitachi Energy advises users to update to recommended versions, implement security practices and firewall configurations, and follow proper password policies. Organizations are recommended to follow best cybersecurity practices to proactively defend industrial control system assets.

OUR SERVICES

How we can help you

Do you have a project in mind?

Tell us your vision and we'll turn it into a software solution. Whatever the scope, we make your idea real.