Directory and File Permission Vulnerability in Hitachi Storage Plug-in for VMware vCenter
CVE-2024-21840
7.1HIGH
Key Information:
- Vendor
- Hitachi
- Vendor
- CVE Published:
- 30 January 2024
Summary
The vulnerability in Hitachi Storage Plug-in for VMware vCenter allows local users to exploit incorrect default permissions, potentially leading to unauthorized access to sensitive files. This security flaw impacts versions ranging from 04.0.0 to 04.9.2. Addressing this issue is crucial for maintaining data integrity and ensuring that sensitive information remains protected from local user access.
Affected Version(s)
Hitachi Storage Plug-in for VMware vCenter 04.0.0 <= 04.9.2
References
CVSS V3.1
Score:
7.1
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved