PT-2022-20983 · Hitachi · Hitachi Ops Center Analyzer

Published

2022-11-01

·

Updated

2023-03-01

·

CVE-2022-3191

CVSS v3.1

6.6

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L
Name of the Vulnerable Software and Affected Versions Hitachi Ops Center Analyzer versions 10.8.1-00 through 10.9.0-00
Description The issue allows local users to gain sensitive information due to the insertion of sensitive information into log files. This is related to the Virtual Strage Software Agent component on Linux.
Recommendations For versions 10.8.1-00 through 10.9.0-00, update to version 10.9.0-00 or later to resolve the issue. As a temporary workaround, consider restricting access to log files to minimize the risk of sensitive information disclosure.

Fix

Insertion into Log File

Weakness Enumeration

Related Identifiers

CVE-2022-3191

Affected Products

Hitachi Ops Center Analyzer