PT-2024-9532 · Hitachi · Hitachi Ops Center Ova+1
Published
2024-12-03
·
Updated
2024-12-08
·
CVE-2024-45068
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:S/C:C/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Hitachi Ops Center Common Services versions 10.9.3-00 through 11.0.3-00
Hitachi Ops Center OVA versions 10.9.3-00 through 11.0.2-01
Description
The issue is related to the use of default credentials in Hitachi Ops Center Common Services, which can allow a remote attacker to gain unauthorized access to protected information. This is an authentication credentials leakage vulnerability.
Recommendations
For Hitachi Ops Center Common Services versions 10.9.3-00 through 11.0.3-00, update to version 11.0.3-00 or later.
For Hitachi Ops Center OVA versions 10.9.3-00 through 11.0.2-01, update to version 11.0.2-01 or later.
As a temporary workaround, consider changing the default credentials to custom ones to prevent exploitation until a patch is applied.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Hitachi Ops Center Common Services
Hitachi Ops Center Ova