Cross-Site Scripting Vulnerability in Hitachi Infrastructure Analytics Advisor
CVE-2026-2072

8.2HIGH

What is CVE-2026-2072?

A Cross-Site Scripting vulnerability exists in the Hitachi Infrastructure Analytics Advisor and Ops Center Analyzer, impacting versions from 10.0.0-00 prior to 11.0.5-00. This flaw allows an attacker to inject arbitrary web script or HTML into a vulnerable application, potentially compromising sensitive information or leading to unauthorized actions by users.

Affected Version(s)

Hitachi Infrastructure Analytics Advisor Linux 0

Hitachi Ops Center Analyzer Linux 10.0.0-00 < 11.0.5-00

References

CVSS V3.1

Score:
8.2
Severity:
HIGH
Confidentiality:
High
Integrity:
Low
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.