PT-2023-17397 · Hitachi · Hitachi Hirdb Server With Addtional Function +2

Published

2023-08-28

·

Updated

2023-09-27

·

CVE-2023-1995

CVSS v3.1
5.3
VectorAV:N/AC:H/PR:L/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions Hitachi HiRDB Server versions before 09-60-39, before 09-65-23, before 09-66-17, before 10-01-10, before 10-03-12, before 10-04-06, before 10-05-06, before 10-06-02 Hitachi HiRDB Server With Addtional Function versions before 09-60-2M, before 09-65-/W, before 09-66-/Q Hitachi HiRDB Structured Data Access Facility versions before 09-60-39, before 10-03-12, before 10-04-06, before 10-06-02
Description The issue is related to an Insufficient Logging vulnerability in Hitachi HiRDB Server, HiRDB Server With Addtional Function, and HiRDB Structured Data Access Facility. No information is provided about the estimated number of potentially affected devices worldwide or real-world incidents where this issue was exploited.
Recommendations For Hitachi HiRDB Server versions before 09-60-39, before 09-65-23, before 09-66-17, before 10-01-10, before 10-03-12, before 10-04-06, before 10-05-06, before 10-06-02, update to a version that includes the fix for this issue. For Hitachi HiRDB Server With Addtional Function versions before 09-60-2M, before 09-65-/W, before 09-66-/Q, update to a version that includes the fix for this issue. For Hitachi HiRDB Structured Data Access Facility versions before 09-60-39, before 10-03-12, before 10-04-06, before 10-06-02, update to a version that includes the fix for this issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

CVE-2023-1995

Affected Products

Hitachi Hirdb Server
Hitachi Hirdb Server With Addtional Function
Hitachi Hirdb Structured Data Access Facility