CVE-2024-2377: Hitachi Energy SDM600
High severity, CVSS 7.6. EPSS: 0.2% chance of exploitation in the next 30 days.
A vulnerability exists in the too permissive HTTP response header web server settings of the SDM600. An attacker can take advantage of this and possibly carry out privileged actions and access sensitive information.
Affected products
- Hitachi Energy SDM600: before 1.3.4 (fixed in 1.3.4)
- Hitachienergy SDM600
Published 2024-04-30. Last modified 2026-06-17.