PT-2024-9532 · Hitachi · Hitachi Ops Center Ova+1

Published

2024-12-03

·

Updated

2024-12-08

·

CVE-2024-45068

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:S/C:C/I:P/A:N
Name of the Vulnerable Software and Affected Versions Hitachi Ops Center Common Services versions 10.9.3-00 through 11.0.3-00 Hitachi Ops Center OVA versions 10.9.3-00 through 11.0.2-01
Description The issue is related to the use of default credentials in Hitachi Ops Center Common Services, which can allow a remote attacker to gain unauthorized access to protected information. This is an authentication credentials leakage vulnerability.
Recommendations For Hitachi Ops Center Common Services versions 10.9.3-00 through 11.0.3-00, update to version 11.0.3-00 or later. For Hitachi Ops Center OVA versions 10.9.3-00 through 11.0.2-01, update to version 11.0.2-01 or later. As a temporary workaround, consider changing the default credentials to custom ones to prevent exploitation until a patch is applied.

Fix

Weakness Enumeration

Related Identifiers

BDU:2024-11234
CVE-2024-45068

Affected Products

Hitachi Ops Center Common Services
Hitachi Ops Center Ova