Vulnerabilities > Hitachi > Device Manager

DATE CVE VULNERABILITY TITLE RISK
2017-05-29 CVE-2017-9298 Cross-site Scripting vulnerability in Hitachi Device Manager
Cross-site scripting vulnerability in Hitachi Device Manager before 8.5.2-01 and Hitachi Replication Manager before 8.5.2-00 allows authenticated remote users to execute arbitrary JavaScript code.
network
low complexity
hitachi CWE-79
5.4
2017-05-29 CVE-2017-9297 Open Redirect vulnerability in Hitachi Device Manager
Open Redirect vulnerability in Hitachi Device Manager before 8.5.2-01 allows remote attackers to redirect users to arbitrary web sites.
network
low complexity
hitachi CWE-601
6.1
2017-05-29 CVE-2017-9296 Open Redirect vulnerability in Hitachi Device Manager
Open Redirect vulnerability in Hitachi Device Manager before 8.5.2-01 and Hitachi Tuning Manager before 8.5.2-00 allows remote attackers to redirect authenticated users to arbitrary web sites.
network
low complexity
hitachi CWE-601
6.1
2017-05-29 CVE-2017-9295 XXE vulnerability in Hitachi Device Manager
XXE vulnerability in Hitachi Device Manager before 8.5.2-01 and Hitachi Replication Manager before 8.5.2-00 allows authenticated remote users to read arbitrary files.
network
low complexity
hitachi CWE-611
6.5
2017-05-29 CVE-2017-9294 Unspecified vulnerability in Hitachi Device Manager
RMI vulnerability in Hitachi Device Manager before 8.5.2-01 allows remote attackers to execute internal commands without authentication via RMI ports.
network
low complexity
hitachi
critical
9.8