Vulnerability index

Browse CVEs

165 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Vantara Pentaho HIGH 7.5
CVE-2021-45446

A vulnerability in Hitachi Vantara Pentaho Business Analytics Server versions before 9.2.0.2 and 8.3.0.25 does not cascade the hidden property to …

Fix: 8.3.0.25 / 9.2.0.2+
Fix from $1,950 2022-11-02
Infrastructure Analytics Advisor CRITICAL 9.8
CVE-2022-41552

Server-Side Request Forgery (SSRF) vulnerability in Hitachi Infrastructure Analytics Advisor on Linux (Data Center Analytics, Analytics probe compone…

Fix: 10.9.0-00+
Fix from $2,300 2022-11-01
Ops Center Analyzer MEDIUM 5.5
CVE-2022-3191

Insertion of Sensitive Information into Log File vulnerability in Hitachi Ops Center Analyzer on Linux (Virtual Strage Software Agent component) allo…

Fix: 10.9.0-00+
Fix from $1,600 2022-11-01
Infrastructure Analytics Advisor MEDIUM 5.5
CVE-2022-41553

Insertion of Sensitive Information into Temporary File vulnerability in Hitachi Infrastructure Analytics Advisor on Linux (Analytics probe component)…

Fix: 10.9.0-00+
Fix from $1,600 2022-11-01
Storage Plug In HIGH 8.8
CVE-2022-2637

Incorrect Privilege Assignment vulnerability in Hitachi Hitachi Storage Plug-in for VMware vCenter allows remote authenticated users to cause privile…

Mitigation only
Fix from $1,950 2022-10-06
Raid Manager Storage Replication Adapter HIGH 8.8
CVE-2022-34883

OS Command Injection vulnerability in Hitachi RAID Manager Storage Replication Adapter allows remote authenticated users to execute arbitrary OS comm…

Fix: 02.03.02+
Fix from $1,950 2022-09-06
Raid Manager Storage Replication Adapter MEDIUM 6.5
CVE-2022-34882

Information Exposure Through an Error Message vulnerability in Hitachi RAID Manager Storage Replication Adapter allows remote authenticated users to …

Fix: 02.03.02+
Fix from $1,600 2022-09-06
Hc Ip9100hd Firmware HIGH 7.5
CVE-2022-37680

An improper authentication for critical function issue in Hitachi Kokusai Electric Network products for monitoring system (Camera, Decoder and Encode…

Fix: after 1.07
Fix from $1,950 2022-08-29
Hc Ip9100hd Firmware HIGH 7.5
CVE-2022-37681

Hitachi Kokusai Electric Newtork products for monitoring system (Camera, Decoder and Encoder) and below allows attckers to perform a directory traver…

Fix: after 1.07
Fix from $1,950 2022-08-29
Linkone HIGH 7.5
CVE-2021-40339

Configuration vulnerability in Hitachi Energy LinkOne application due to the lack of HTTP Headers, allows an attacker that manages to exploit this vu…

Mitigation only
Fix from $1,950 2022-01-28
Linkone HIGH 7.5
CVE-2021-40340

Information Exposure vulnerability in Hitachi Energy LinkOne application, due to a misconfiguration in the ASP server exposes server and ASP.net info…

Mitigation only
Fix from $1,950 2022-01-28
Linkone MEDIUM 5.3
CVE-2021-40338

Hitachi Energy LinkOne product, has a vulnerability due to a web server misconfiguration, that enables debug mode and reveals the full path of the fi…

Mitigation only
Fix from $1,600 2022-01-28
Linkone MEDIUM 5.4
CVE-2021-40337

Cross-site Scripting (XSS) vulnerability in Hitachi Energy LinkOne allows an attacker that manages to exploit the vulnerability can take advantage to…

Mitigation only
Fix from $1,600 2022-01-25
Vantara Pentaho CRITICAL 9.8
CVE-2021-34684EPSS 6%

Hitachi Vantara Pentaho Business Analytics through 9.1 allows an unauthenticated user to execute arbitrary SQL queries on any Pentaho data source and…

Fix: after 9.1.0.0
Fix from $2,300 2021-11-08
Vantara Pentaho HIGH 8.8
CVE-2021-31599

An issue was discovered in Hitachi Vantara Pentaho through 9.1 and Pentaho Business Intelligence Server through 7.x. A reports (.prpt) file allows th…

Fix: after 9.1.0.0
Fix from $1,950 2021-11-08
Vantara Pentaho HIGH 7.5
CVE-2021-31602EPSS 52%

An issue was discovered in Hitachi Vantara Pentaho through 9.1 and Pentaho Business Intelligence Server through 7.x. The Security Model has different…

Fix: after 9.1.0.0
Fix from $1,950 2021-11-08
Vantara Pentaho HIGH 7.2
CVE-2021-34685

UploadService in Hitachi Vantara Pentaho Business Analytics through 9.1 does not properly verify uploaded user files, which allows an authenticated u…

Fix: after 9.1.0.0
Fix from $1,950 2021-11-08
Vantara Pentaho MEDIUM 6.5
CVE-2021-31601

An issue was discovered in Hitachi Vantara Pentaho through 9.1 and Pentaho Business Intelligence Server through 7.x. They implement a series of web s…

Fix: after 9.1.0.0
Fix from $1,600 2021-11-08
It Operations Director CRITICAL 9.8
CVE-2021-29644

Hitachi JP1/IT Desktop Management 2 Agent 9 through 12 contains a remote code execution vulnerability because of an Integer Overflow. An attacker wit…

Fix: after 12-50-03
Fix from $2,300 2021-10-12
It Operations Director HIGH 7.8
CVE-2021-29645

Hitachi JP1/IT Desktop Management 2 Agent 9 through 12 calls the SendMessageTimeoutW API with arbitrary arguments via a local pipe, leading to a loca…

Fix: after 12-50-03
Fix from $1,950 2021-10-12
Content Platform Anywhere MEDIUM 6.5
CVE-2021-41573

Hitachi Content Platform Anywhere (HCP-AW) 4.4.5 and later allows information disclosure. If authenticated user creates a link to a file or folder wh…

Mitigation only
Fix from $1,600 2021-09-29
Virtual File Platform HIGH 8.8
CVE-2021-20740

Hitachi Virtual File Platform Versions prior to 5.5.3-09 and Versions prior to 6.4.3-09, and NEC Storage M Series NAS Gateway Nh4a/Nh8a versions prio…

Fix: 5.5.3-09 / 6.4.3-09+
Fix from $1,950 2021-06-28
Application Server V10 Manual MEDIUM 6.1
CVE-2021-20741

Cross-site scripting vulnerability in Hitachi Application Server Help (Hitachi Application Server V10 Manual (Windows) version 10-11-01 and earlier a…

Fix: after 10-11-01
Fix from $1,600 2021-06-22
Id Bravura Security Fabric HIGH 8.8
CVE-2021-3196

An issue was discovered in Hitachi ID Bravura Security Fabric 11.0.0 through 11.1.3, 12.0.0 through 12.0.2, and 12.1.0. When using federated identity…

Fix: after 12.0.2
Fix from $1,950 2021-06-09
Vantara Pentaho MEDIUM 5.4
CVE-2020-24666

The Analysis Report in Hitachi Vantara Pentaho through 7.x - 8.x contains a stored Cross-site scripting vulnerability, which allows an authenticated …

Fix: 9.1.0.1+
Fix from $1,600 2021-01-29
Vantara Pentaho MEDIUM 5.4
CVE-2020-24669

The New Analysis Report in Hitachi Vantara Pentaho through 7.x - 8.x contains a DOM-based Cross-site scripting vulnerability, which allows an authent…

Fix: 8.3.0.9 / 9.0.0.1+
Fix from $1,600 2021-01-29
Vantara Pentaho MEDIUM 5.4
CVE-2020-24670

The Dashboard Editor in Hitachi Vantara Pentaho through 7.x - 8.x contains a reflected Cross-site scripting vulnerability, which allows an authentica…

Fix: 7.1.0.25 / 8.2.0.6+
Fix from $1,600 2021-01-29
Vantara Pentaho MEDIUM 6.5
CVE-2020-24665

The Dashboard Editor in Hitachi Vantara Pentaho through 7.x - 8.x contains an XML Entity Expansion injection vulnerability, which allows an authentic…

Fix: 7.1.0.25 / 8.2.0.6+
Fix from $1,600 2021-01-29
Vantara Pentaho MEDIUM 5.4
CVE-2020-24664

The dashboard Editor in Hitachi Vantara Pentaho through 7.x - 8.x contains a reflected Cross-site scripting vulnerability, which allows an authentica…

Fix: 7.1.0.25 / 8.2.0.6+
Fix from $1,600 2021-01-29
Device Manager MEDIUM 6.5
CVE-2018-21033

A vulnerability in Hitachi Command Suite prior to 8.6.2-00, Hitachi Automation Director prior to 8.6.2-00 and Hitachi Infrastructure Analytics Adviso…

Fix: 4.2.0-00 / 8.6.2-00+
Fix from $1,600 2020-02-14