← back
CVE-2023-5516

CVE-2023-5516

CVSS 5.3 MEDIUMEPSS 0.4%CWE-200
Poorly constructed webap requests and URI components with special characters trigger unhandled errors and exceptions, disclosing information about the underlying technology and other sensitive information details. The website unintentionally reveals sensitive information including technical details like version Info, endpoints, backend server, Internal IP. etc., which can potentially expose additional attack surface containing other interesting vulnerabilities.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Affected products
Hitachi Energy · eSOMS

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →