Remote Code Execution Vulnerability in JP1/IT Desktop Management by Hitachi
CVE-2025-65115

8.8HIGH

What is CVE-2025-65115?

A remote code execution vulnerability exists in various versions of Hitachi's JP1/IT Desktop Management software, affecting multiple components including the Manager and Operations Director on Windows. An attacker could exploit this flaw to execute arbitrary code on the affected systems, potentially compromising system integrity and confidentiality. Organizations using these products should prioritize applying available security updates to mitigate risks.

Affected Version(s)

Job Management Partner 1/IT Desktop Management - Manager Windows 09-50 <= 10-10-16

Job Management Partner 1/IT Desktop Management 2 - Manager Windows 10-50 <= 10-50-11

Job Management Partner 1/Software Distribution Client Windows 09-00 <= 09-51-13

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Ruslan Sayfiev
Denis Faiustov
.