hitachi kayıtları
hitachi üreticisine ait 214 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 2 · %0,9
- Silahlaştırılmış
- 2 · %0,9
- Pre-auth RCE
- 26
- Düzeltme kaydı olan
- %35
- Yayından KEV’e ortanca
- 700 gün
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')21
- CWE-276 Incorrect Default Permissions10
- CWE-20 Improper Input Validation9
- CWE-532 Insertion of Sensitive Information into Log File7
- CWE-209 Generation of Error Message Containing Sensitive Information7
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor4
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
214 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
97Hemen | CVE-2022-43939Silahlaştırılmış | Hitachi Vantara Pentaho Business Analytics Server - Use of Non-Canonical URL Paths for Authorization Decisionshitachi · vantara pentaho business analytics server · CWE-647 | Kritik9,8 | KEV | %92,3 | 3 Nis 2023 |
87Hemen | CVE-2022-43769Silahlaştırılmış | Hitachi Vantara Pentaho Business Analytics Server - Failure to Sanitize Special Elements into a Different Plane (Special Element Injection)hitachi · vantara pentaho business analytics server · CWE-74 | Yüksek7,2 | KEV | %97,7 | 3 Nis 2023 |
45Planlayın | CVE-2005-0356Kavram kanıtı | Multiple TCP implementations with Protection Against Wrapped Sequence Numbers (PAWS) with the timestamps option enabled allow remote attackecisco · agent desktop | Orta5,0 | — | %82,8 | 31 May 2005 |
45Planlayın | CVE-2021-31602Kavram kanıtı | An issue was discovered in Hitachi Vantara Pentaho through 9.1 and Pentaho Business Intelligence Server through 7.x.hitachi · vantara pentaho · CWE-287 | Yüksek7,5 | — | %51,7 | 8 Kas 2021 |
43Planlayın | CVE-2022-43938İstismar yok | Hitachi Vantara Pentaho Business Analytics Server - Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection')hitachi · vantara pentaho business analytics server · CWE-96 | Yüksek8,8 | — | %26,4 | 3 Nis 2023 |
42Planlayın | CVE-2022-43773İstismar yok | Hitachi Vantara Pentaho Business Analytics Server - Incorrect Permission Assignment for Critical Resourcehitachi · vantara pentaho business analytics server · CWE-732 | Yüksek8,8 | — | %22,2 | 3 Nis 2023 |
42Planlayın | CVE-2006-6713İstismar yok | Buffer overflow in Hitachi Directory Server 2 P-2444-A124 before 02-11-/K on Windows, and P-1B44-A121 before 02-10-/V on HP-UX, allows remothitachi · hitachi directory server 2 | Kritik10,0 | — | %5,9 | 22 Ara 2006 |
42Planlayın | CVE-2007-4758İstismar yok | Multiple buffer overflows in the image-processing APIs in Cosminexus Developer's Kit for Java in Cosminexus 4 through 7 allow remote attackehitachi · ucosminexus application server enterprise · CWE-119 | Kritik10,0 | — | %5,9 | 8 Eyl 2007 |
42Planlayın | CVE-2010-4773İstismar yok | Unspecified vulnerability in Hitachi EUR Form Client before 05-10 -/D 2010.11.15 and 05-10-CA (* 2) 2010.11.15; Hitachi EUR Form Service befhitachi · eur form client | Kritik10,0 | — | %5,3 | 23 Mar 2011 |
41Planlayın | CVE-2021-34684İstismar yok | Hitachi Vantara Pentaho Business Analytics through 9.1 allows an unauthenticated user to execute arbitrary SQL queries on any Pentaho data shitachi · vantara pentaho · CWE-89 | Kritik9,8 | — | %5,9 | 8 Kas 2021 |
41Planlayın | CVE-2007-1093İstismar yok | Multiple unspecified vulnerabilities in JP1/Cm2/Network Node Manager (NNM) before 07-10-05, and before 08-00-02 in the 08-x series, allow rehitachi · hi ux we2 · CWE-94 | Kritik10,0 | — | %4,9 | 26 Şub 2007 |
41Planlayın | CVE-2012-0918İstismar yok | Unspecified vulnerability in Hitachi COBOL2002 Net Developer, Net Server Suite, and Net Client Suite 01-00, 01-01 through 01-01-/D, 01-02 thhitachi · cobol2002 net developer | Kritik10,0 | — | %4,1 | 24 Oca 2012 |
41Planlayın | CVE-2009-3169İstismar yok | Multiple unspecified vulnerabilities in Hitachi JP1/File Transmission Server/FTP before 09-00 allow remote attackers to execute arbitrary cohitachi · jp1 file transmission server | Kritik10,0 | — | %3,9 | 11 Eyl 2009 |
41Planlayın | CVE-2012-4274İstismar yok | Unspecified vulnerability in Hitachi Cobol GUI Option 06-00, 06-01 through 06-01-/A, 07-00, 07-01 before 07-01-/B, and 08-00 before 08-00-/Bhitachi · cobol gui option | Kritik10,0 | — | %3,5 | 13 Ağu 2012 |
41Planlayın | CVE-2007-3794İstismar yok | Buffer overflow in Hitachi Cosminexus V4 through V7, Processing Kit for XML before 20070511, Developer's Kit for Java before 20070312, and thitachi · cosminexus application server | Kritik10,0 | — | %2,2 | 15 Tem 2007 |
41Planlayın | CVE-2004-2421İstismar yok | Unknown vulnerability in Hitachi Job Management Partner (JP1) JP1/File Transmission Server/FTP 6 and 7, when running on HP-UX in trusted modhitachi · jp1 p-1b41-9461 | Kritik10,0 | — | %1,9 | 31 Ara 2004 |
40Planlayın | CVE-2021-29644İstismar yok | Hitachi JP1/IT Desktop Management 2 Agent 9 through 12 contains a remote code execution vulnerability because of an Integer Overflow.hitachi · it operations director · CWE-190 | Kritik9,8 | — | %2,5 | 12 Eki 2021 |
40Planlayın | CVE-2017-9294İstismar yok | RMI vulnerability in Hitachi Device Manager before 8.5.2-01 allows remote attackers to execute internal commands without authentication via hitachi · device manager | Kritik9,8 | — | %2,4 | 29 May 2017 |
39İzleyin | CVE-2025-9661İstismar yok | OS command injection vulneravility in the management gui (maintenance utility) of Hitachi Virtual Storage Platform One Block 23/24/26/28hitachi · virtual storage one block · CWE-78 | Kritik9,8 | — | %0,9 | 7 May 2026 |
39İzleyin | CVE-2022-41552İstismar yok | Server-Side Request Forgery Vulnerability in Hitachi Infrastructure Analytics Advisor, Hitachi Ops Center Analyzerhitachi · infrastructure analytics advisor · CWE-918 | Kritik9,8 | — | %0,7 | 31 Eki 2022 |
39İzleyin | CVE-2025-65115İstismar yok | Remote Code Execution Vulnerability in JP1/IT Desktop Management 2 and JP1/NETM/DMhitachi · job management partner 1\/it desktop management-manager · CWE-73 | Kritik9,8 | — | %0,6 | 7 Nis 2026 |
39İzleyin | CVE-2025-1978İstismar yok | Remote Code Execution Vulnerability in Hitachi Storage Navigator and the maintenance consolehitachi · virtual storage one block · CWE-94 | Kritik9,8 | — | %0,5 | 7 May 2026 |
39İzleyin | CVE-2022-4146İstismar yok | EL Injection Vulnerability in Hitachi Replication Managerhitachi · replication manager · CWE-917 | Kritik9,8 | — | %0,5 | 17 Tem 2023 |
39İzleyin | CVE-2024-0715İstismar yok | EL Injection Vulnerability in Hitachi Global Link Managerhitachi · global link manager · CWE-917 | Kritik9,8 | — | %0,5 | 19 Şub 2024 |
39İzleyin | CVE-2024-5828İstismar yok | EL Injection Vulnerability in Hitachi Tuning Managerhitachi · tuning manager · CWE-917 | Kritik9,8 | — | %0,4 | 5 Ağu 2024 |
- CVE-2022-4393997Hemen
Hitachi Vantara Pentaho Business Analytics Server - Use of Non-Canonical URL Paths for Authorization Decisions
KritikCVSS 9,8KEVSilahlaştırılmışEPSS %92hitachi · vantara pentaho business analytics server3 Nis 2023
- CVE-2022-4376987Hemen
Hitachi Vantara Pentaho Business Analytics Server - Failure to Sanitize Special Elements into a Different Plane (Special Element Injection)
YüksekCVSS 7,2KEVSilahlaştırılmışEPSS %98hitachi · vantara pentaho business analytics server3 Nis 2023
- CVE-2005-035645Planlayın
Multiple TCP implementations with Protection Against Wrapped Sequence Numbers (PAWS) with the timestamps option enabled allow remote attacke
OrtaCVSS 5,0Kavram kanıtıEPSS %83cisco · agent desktop31 May 2005
- CVE-2021-3160245Planlayın
An issue was discovered in Hitachi Vantara Pentaho through 9.1 and Pentaho Business Intelligence Server through 7.x.
YüksekCVSS 7,5Kavram kanıtıEPSS %52hitachi · vantara pentaho8 Kas 2021
- CVE-2022-4393843Planlayın
Hitachi Vantara Pentaho Business Analytics Server - Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection')
YüksekCVSS 8,8İstismar yokEPSS %26hitachi · vantara pentaho business analytics server3 Nis 2023
- CVE-2022-4377342Planlayın
Hitachi Vantara Pentaho Business Analytics Server - Incorrect Permission Assignment for Critical Resource
YüksekCVSS 8,8İstismar yokEPSS %22hitachi · vantara pentaho business analytics server3 Nis 2023
- CVE-2006-671342Planlayın
Buffer overflow in Hitachi Directory Server 2 P-2444-A124 before 02-11-/K on Windows, and P-1B44-A121 before 02-10-/V on HP-UX, allows remot
KritikCVSS 10,0İstismar yokEPSS %6hitachi · hitachi directory server 222 Ara 2006
- CVE-2007-475842Planlayın
Multiple buffer overflows in the image-processing APIs in Cosminexus Developer's Kit for Java in Cosminexus 4 through 7 allow remote attacke
KritikCVSS 10,0İstismar yokEPSS %6hitachi · ucosminexus application server enterprise8 Eyl 2007
- CVE-2010-477342Planlayın
Unspecified vulnerability in Hitachi EUR Form Client before 05-10 -/D 2010.11.15 and 05-10-CA (* 2) 2010.11.15; Hitachi EUR Form Service bef
KritikCVSS 10,0İstismar yokEPSS %5hitachi · eur form client23 Mar 2011
- CVE-2021-3468441Planlayın
Hitachi Vantara Pentaho Business Analytics through 9.1 allows an unauthenticated user to execute arbitrary SQL queries on any Pentaho data s
KritikCVSS 9,8İstismar yokEPSS %6hitachi · vantara pentaho8 Kas 2021
- CVE-2007-109341Planlayın
Multiple unspecified vulnerabilities in JP1/Cm2/Network Node Manager (NNM) before 07-10-05, and before 08-00-02 in the 08-x series, allow re
KritikCVSS 10,0İstismar yokEPSS %5hitachi · hi ux we226 Şub 2007
- CVE-2012-091841Planlayın
Unspecified vulnerability in Hitachi COBOL2002 Net Developer, Net Server Suite, and Net Client Suite 01-00, 01-01 through 01-01-/D, 01-02 th
KritikCVSS 10,0İstismar yokEPSS %4hitachi · cobol2002 net developer24 Oca 2012
- CVE-2009-316941Planlayın
Multiple unspecified vulnerabilities in Hitachi JP1/File Transmission Server/FTP before 09-00 allow remote attackers to execute arbitrary co
KritikCVSS 10,0İstismar yokEPSS %4hitachi · jp1 file transmission server11 Eyl 2009
- CVE-2012-427441Planlayın
Unspecified vulnerability in Hitachi Cobol GUI Option 06-00, 06-01 through 06-01-/A, 07-00, 07-01 before 07-01-/B, and 08-00 before 08-00-/B
KritikCVSS 10,0İstismar yokEPSS %3hitachi · cobol gui option13 Ağu 2012
- CVE-2007-379441Planlayın
Buffer overflow in Hitachi Cosminexus V4 through V7, Processing Kit for XML before 20070511, Developer's Kit for Java before 20070312, and t
KritikCVSS 10,0İstismar yokEPSS %2hitachi · cosminexus application server15 Tem 2007
- CVE-2004-242141Planlayın
Unknown vulnerability in Hitachi Job Management Partner (JP1) JP1/File Transmission Server/FTP 6 and 7, when running on HP-UX in trusted mod
KritikCVSS 10,0İstismar yokEPSS %2hitachi · jp1 p-1b41-946131 Ara 2004
- CVE-2021-2964440Planlayın
Hitachi JP1/IT Desktop Management 2 Agent 9 through 12 contains a remote code execution vulnerability because of an Integer Overflow.
KritikCVSS 9,8İstismar yokEPSS %3hitachi · it operations director12 Eki 2021
- CVE-2017-929440Planlayın
RMI vulnerability in Hitachi Device Manager before 8.5.2-01 allows remote attackers to execute internal commands without authentication via
KritikCVSS 9,8İstismar yokEPSS %2hitachi · device manager29 May 2017
- CVE-2025-966139İzleyin
OS command injection vulneravility in the management gui (maintenance utility) of Hitachi Virtual Storage Platform One Block 23/24/26/28
KritikCVSS 9,8İstismar yokEPSS %1hitachi · virtual storage one block7 May 2026
- CVE-2022-4155239İzleyin
Server-Side Request Forgery Vulnerability in Hitachi Infrastructure Analytics Advisor, Hitachi Ops Center Analyzer
KritikCVSS 9,8İstismar yokEPSS %1hitachi · infrastructure analytics advisor31 Eki 2022
- CVE-2025-6511539İzleyin
Remote Code Execution Vulnerability in JP1/IT Desktop Management 2 and JP1/NETM/DM
KritikCVSS 9,8İstismar yokEPSS %1hitachi · job management partner 1\/it desktop management-manager7 Nis 2026
- CVE-2025-197839İzleyin
Remote Code Execution Vulnerability in Hitachi Storage Navigator and the maintenance console
KritikCVSS 9,8İstismar yokEPSS %1hitachi · virtual storage one block7 May 2026
- CVE-2022-414639İzleyin
EL Injection Vulnerability in Hitachi Replication Manager
KritikCVSS 9,8İstismar yokEPSS %1hitachi · replication manager17 Tem 2023
- CVE-2024-071539İzleyin
EL Injection Vulnerability in Hitachi Global Link Manager
KritikCVSS 9,8İstismar yokEPSS %0hitachi · global link manager19 Şub 2024
- CVE-2024-582839İzleyin
EL Injection Vulnerability in Hitachi Tuning Manager
KritikCVSS 9,8İstismar yokEPSS %0hitachi · tuning manager5 Ağu 2024