Directory and File Permission Vulnerability in Hitachi Storage Plug-in for VMware vCenter
CVE-2024-21840

7.1HIGH

Key Information:

Vendor
Hitachi
Vendor
CVE Published:
30 January 2024

Summary

The vulnerability in Hitachi Storage Plug-in for VMware vCenter allows local users to exploit incorrect default permissions, potentially leading to unauthorized access to sensitive files. This security flaw impacts versions ranging from 04.0.0 to 04.9.2. Addressing this issue is crucial for maintaining data integrity and ensuring that sensitive information remains protected from local user access.

Affected Version(s)

Hitachi Storage Plug-in for VMware vCenter 04.0.0 <= 04.9.2

References

CVSS V3.1

Score:
7.1
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.