Vulnerabilities > Hitachi > IT Operations Director > 03.00

DATE CVE VULNERABILITY TITLE RISK
2021-10-12 CVE-2021-29644 Integer Overflow or Wraparound vulnerability in Hitachi products
Hitachi JP1/IT Desktop Management 2 Agent 9 through 12 contains a remote code execution vulnerability because of an Integer Overflow.
network
low complexity
hitachi CWE-190
critical
10.0
2021-10-12 CVE-2021-29645 Unspecified vulnerability in Hitachi products
Hitachi JP1/IT Desktop Management 2 Agent 9 through 12 calls the SendMessageTimeoutW API with arbitrary arguments via a local pipe, leading to a local privilege escalation vulnerability.
local
low complexity
hitachi
4.6
2013-07-31 CVE-2013-4697 Unspecified vulnerability in Hitachi products
Multiple unspecified vulnerabilities in Hitachi JP1/IT Desktop Management - Manager 09-50 through 09-50-03, 09-51 through 09-51-05, 10-00 through 10-00-02, and 10-01 through 10-01-02; Hitachi Job Management Partner 1/IT Desktop Management - Manager 09-50 through 09-50-03 and 10-01; and Hitachi IT Operations Director 02-50 through 02-50-07, 03-00 through 03-00-12, and 04-00 through 04-00-01 allow remote authenticated users to gain privileges via unknown vectors.
network
low complexity
hitachi
critical
9.0
2012-08-13 CVE-2012-4276 Unspecified vulnerability in Hitachi IT Operations Director
Unspecified vulnerability in Hitachi IT Operations Director 02-50-01 through 02-50-07, 03-00 before 03-00-08 allows attackers to cause a denial of service via unknown attack vectors.
network
low complexity
hitachi
5.0
2012-08-13 CVE-2012-4275 Cross-Site Scripting vulnerability in Hitachi IT Operations Director
Cross-site scripting (XSS) vulnerability in Hitachi IT Operations Director 02-50-01 through 02-50-07, 03-00 before 03-00-08 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
hitachi CWE-79
4.3
2012-01-24 CVE-2012-0919 Cross-Site Scripting vulnerability in Hitachi IT Operations Director
Cross-site scripting (XSS) vulnerability in Hitachi IT Operations Director 02-50-01 through 02-50-07, 03-00 through 03-00-04, and possibly other versions before 03-00-06, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
hitachi CWE-79
4.3