Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
hitachi vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2020-36695
Incorrect Default Permissions vulnerability in Hitachi Device Manager on Linux (Device Manager Server component), Hitachi Tiered Storage Manager on Linux, Hitachi Replication Manager on Linux, Hitachi Tuning Manager on Linux (Hitachi Tuning Manager server, Hitachi Tuning Manager ...
Hitachi Compute Systems Manager
Hitachi Device Manager
Hitachi Replication Manager
Hitachi Tiered Storage Manager
Hitachi Tuning Manager
NA
CVE-2020-36652
Incorrect Default Permissions vulnerability in Hitachi Automation Director on Linux, Hitachi Infrastructure Analytics Advisor on Linux (Hitachi Infrastructure Analytics Advisor, Analytics probe server components), Hitachi Ops Center Automator on Linux, Hitachi Ops Center Analyzer...
Hitachi Automation Director
Hitachi Infrastructure Analytics Advisor
Hitachi Ops Center Analyzer
Hitachi Ops Center Automator
Hitachi Ops Center Viewpoint
5
CVSSv2
CVE-2019-17360
A vulnerability in Hitachi Command Suite 7.x and 8.x prior to 8.7.0-00 allows an unauthenticated remote user to trigger a denial of service (DoS) condition because of Uncontrolled Resource Consumption.
Hitachi Device Manager
Hitachi Replication Manager
Hitachi Tiered Storage Manager
Hitachi Infrastructure Analytics Advisor
Hitachi Tuning Manager
10
CVSSv2
CVE-2021-29644
Hitachi JP1/IT Desktop Management 2 Agent 9 through 12 contains a remote code execution vulnerability because of an Integer Overflow. An attacker with network access to port 31016 may exploit this issue to execute code with unrestricted privileges on the underlying OS.
Hitachi It Operations Director
Hitachi Job Management Partner 1\\/it Desktop Management-manager
Hitachi Job Management Partner 1\\/it Desktop Management 2-manager
Hitachi Job Management Partner 1\\/remote Control Agent
Hitachi Job Management Partner 1\\/software Distribution Client
Hitachi Job Management Partner 1\\/software Distribution Manager
Hitachi Jp1\\/it Desktop Management-manager
Hitachi Jp1\\/it Desktop Management 2-manager
Hitachi Jp1\\/it Desktop Management 2-operations Director
Hitachi Jp1\\/netdm\\/dm Client
Hitachi Jp1\\/netdm\\/dm Client-remote Control Feature
Hitachi Jp1\\/netdm\\/dm Manager
Hitachi Jp1\\/netm\\/remote Control Agent
Hitachi Jp1\\/remote Control Agent
4.6
CVSSv2
CVE-2021-29645
Hitachi JP1/IT Desktop Management 2 Agent 9 through 12 calls the SendMessageTimeoutW API with arbitrary arguments via a local pipe, leading to a local privilege escalation vulnerability. An attacker who exploits this issue could execute arbitrary code on the local system.
Hitachi Job Management Partner 1\\/remote Control Agent
Hitachi It Operations Director
Hitachi Job Management Partner 1\\/it Desktop Management-manager
Hitachi Job Management Partner 1\\/software Distribution Client
Hitachi Job Management Partner 1\\/software Distribution Manager
Hitachi Jp1\\/it Desktop Management 2-operations Director
Hitachi Job Management Partner 1\\/it Desktop Management 2-manager
Hitachi Jp1\\/it Desktop Management-manager
Hitachi Jp1\\/it Desktop Management 2-manager
Hitachi Jp1\\/netm\\/dm Client
Hitachi Jp1\\/netm\\/dm Manager
Hitachi Jp1\\/netm\\/dm Client-remote Control Feature
Hitachi Jp1\\/netm\\/remote Control Feature
Hitachi Jp1\\/remote Control Feature
4.3
CVSSv2
CVE-2007-5809
Cross-site scripting (XSS) vulnerability in Hitachi Web Server 01-00 through 03-10, as used by certain Cosminexus products, allows remote malicious users to inject arbitrary web script or HTML via unspecified HTTP requests that trigger creation of a server-status page.
Hitachi Web Server 01 01
Hitachi Web Server 02 00
Hitachi Web Server 02 02
Hitachi Web Server 02 04 B
Hitachi Web Server 03 00
Hitachi Cosminexus Developer Standard Version 6
Hitachi Cosminexus Server
Hitachi Ucosminexus Service Platform
Hitachi Web Server 01 02 D
Hitachi Web Server 02 00 A
Hitachi Web Server 02 06 A
Hitachi Cosminexus Application Server Enterprise
Hitachi Cosminexus Application Server Standard
Hitachi Ucosminexus Developer Light
Hitachi Ucosminexus Developer Professional
Hitachi Web Server 01 01 D
Hitachi Web Server 03 00 01
Hitachi Ucosminexus Application Server Enterprise
Hitachi Ucosminexus Application Server Standard
Hitachi Web Server 01 00
Hitachi Web Server 01 02 E
Hitachi Cosminexus Developer Light Version 6
5
CVSSv2
CVE-2007-5810
Hitachi Web Server 01-00 through 03-00-01, as used by certain Cosminexus products, does not properly validate SSL client certificates, which might allow remote malicious users to spoof authentication via a client certificate with a forged signature.
Hitachi Web Server 01 00
Hitachi Web Server 01 02 D
Hitachi Web Server 01 02 E
Hitachi Web Server 02 00 A
Hitachi Web Server 02 02
Hitachi Web Server 02 06 A
Hitachi Web Server 03 00
Hitachi Web Server 01 01
Hitachi Web Server 02 00
Hitachi Web Server 02 04 B
Hitachi Web Server 03 00 01
Hitachi Cosminexus Server
Hitachi Ucosminexus Application Server Enterprise
Hitachi Cosminexus Application Server Standard
Hitachi Cosminexus Developer Light Version 6
Hitachi Ucosminexus Developer Professional
Hitachi Ucosminexus Developer Standard
Hitachi Cosminexus Developer Professional Version 6
Hitachi Cosminexus Developer Standard Version 6
Hitachi Ucosminexus Service Architect
Hitachi Ucosminexus Service Platform
Hitachi Web Server 01 01 D
7.1
CVSSv2
CVE-2008-2169
Unspecified vulnerability in Avici routers allows remote malicious users to cause a denial of service (dropped session) via crafted BGP UPDATE messages, leading to route flapping, possibly a related issue to CVE-2007-6372.
Hitachi Gr4000
Avici Router
Hitachi Gr2000 1b
Hitachi Gr2000 2b
Hitachi Gr2000 Bh
Hitachi Gr2000 2b\\+
Hitachi Gr3000
3.5
CVSSv2
CVE-2021-40337
Cross-site Scripting (XSS) vulnerability in Hitachi Energy LinkOne allows an attacker that manages to exploit the vulnerability can take advantage to exploit multiple web attacks and stole sensitive information. This issue affects: Hitachi Energy LinkOne 3.20; 3.22; 3.23; 3.24; 3...
Hitachi Linkone 3.20
Hitachi Linkone 3.22
Hitachi Linkone 3.23
Hitachi Linkone 3.24
Hitachi Linkone 3.25
Hitachi Linkone 3.26
5
CVSSv2
CVE-2021-40338
Hitachi Energy LinkOne product, has a vulnerability due to a web server misconfiguration, that enables debug mode and reveals the full path of the filesystem directory when an attacker generates errors during a query operation. This issue affects: Hitachi Energy LinkOne 3.20; 3.2...
Hitachi Linkone 3.22
Hitachi Linkone 3.23
Hitachi Linkone 3.24
Hitachi Linkone 3.25
Hitachi Linkone 3.26
Hitachi Linkone 3.20
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2022-48693
CVE-2024-30851
CVE-2024-34460
CVE-2024-2887
local
CVE-2024-27956
remote code execution
CVE-2024-34475
privilege
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »