Vulnerabilities > Hitachi > Low

DATE CVE VULNERABILITY TITLE RISK
2022-12-06 CVE-2022-34881 Information Exposure Through an Error Message vulnerability in Hitachi Jp1/Automatic Operation
Generation of Error Message Containing Sensitive Information vulnerability in Hitachi JP1/Automatic Operation allows local users to gain sensitive information. This issue affects JP1/Automatic Operation: from 10-00 through 10-54-03, from 11-00 before 11-51-09, from 12-00 before 12-60-01.
local
low complexity
hitachi CWE-209
3.3
2022-01-25 CVE-2021-40337 Cross-site Scripting vulnerability in Hitachi Linkone
Cross-site Scripting (XSS) vulnerability in Hitachi Energy LinkOne allows an attacker that manages to exploit the vulnerability can take advantage to exploit multiple web attacks and stole sensitive information.
network
hitachi CWE-79
3.5
2021-01-29 CVE-2020-24664 Cross-site Scripting vulnerability in Hitachi Vantara Pentaho 7.0.0/8.0.0
The dashboard Editor in Hitachi Vantara Pentaho through 7.x - 8.x contains a reflected Cross-site scripting vulnerability, which allows an authenticated remote users to execute arbitrary JavaScript code.
network
hitachi CWE-79
3.5
2021-01-29 CVE-2020-24666 Cross-site Scripting vulnerability in Hitachi Vantara Pentaho
The Analysis Report in Hitachi Vantara Pentaho through 7.x - 8.x contains a stored Cross-site scripting vulnerability, which allows an authenticated remote users to execute arbitrary JavaScript code.
network
hitachi CWE-79
3.5
2021-01-29 CVE-2020-24669 Cross-site Scripting vulnerability in Hitachi Vantara Pentaho
The New Analysis Report in Hitachi Vantara Pentaho through 7.x - 8.x contains a DOM-based Cross-site scripting vulnerability, which allows an authenticated remote users to execute arbitrary JavaScript code.
network
hitachi CWE-79
3.5
2021-01-29 CVE-2020-24670 Cross-site Scripting vulnerability in Hitachi Vantara Pentaho 7.0.0/8.0.0
The Dashboard Editor in Hitachi Vantara Pentaho through 7.x - 8.x contains a reflected Cross-site scripting vulnerability, which allows an authenticated remote users to execute arbitrary JavaScript code.
network
hitachi CWE-79
3.5
2017-05-29 CVE-2017-9298 Cross-site Scripting vulnerability in Hitachi Device Manager 7.0.0/7.0.000/8.1.1
Cross-site scripting vulnerability in Hitachi Device Manager before 8.5.2-01 and Hitachi Replication Manager before 8.5.2-00 allows authenticated remote users to execute arbitrary JavaScript code.
network
hitachi CWE-79
3.5
2007-08-08 CVE-2007-4204 Information Disclosure vulnerability in Hitachi products
Hitachi Groupmax Collaboration - Schedule, as used in Groupmax Collaboration Portal 07-32 through 07-32-/B, uCosminexus Collaboration Portal 06-32 through 06-32-/B, and Groupmax Collaboration Web Client - Mail/Schedule 07-32 through 07-32-/A, can assign schedule data to the wrong user under unspecified conditions, which might allow remote authenticated users to obtain sensitive information.
network
hitachi
3.5