CVE-2026-7395
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
Asset Suite allows unauthenticated users to access HTTPPublishAdapterTestServlet that can be used for configuration file upload, leading to information disclosure and integrity compromise. The HTTPPublishAdapterTestServlet is specifically meant for testing purposes to be used in a non-production environment.
| CWE | CWE-306 |
| Vendor | hitachi energy |
| Product | asset suite |
| Published | Sep 29, 2026 |
| Last Updated | Sep 29, 2026 |
Stay Ahead of the Next One
Get instant alerts for hitachi energy asset suite
Be the first to know when new unknown vulnerabilities affecting hitachi energy asset suite are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Hitachi Energy / Asset Suite
9.6.0 โค 9.9.0