PowerSYSTEM Center REST API endpoint for devices allows a low privilege authenticated user to access information normally limited by operational permissions.
CVSS Details
CVSS Score
5.7
Severity
MEDIUM
CVSS Vector
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Configurations (Affected Products)
No configuration data available.
PowerSYSTEM Center (具体受影响版本请参考ICS-CERT公告 ICSA-26-132-02)
PoC / Exploit Code
⚠ For Security Research Only
The following code is for security research and authorized testing only.