Improper Certificate Validation vulnerability in Hitachi Infrastructure Analytics Advisor on Linux (Analytics probe component), Hitachi Ops Center Analyzer on Linux (Analyzer probe component) allows Man in the Middle Attack.This issue affects Hitachi Infrastructure Analytics Advisor: from 2.0.0-00 through 4.4.0-00; Hitachi Ops Center Analyzer: from 10.0.0-00 before 10.9.1-00.
References
Link | Resource |
---|---|
https://www.hitachi.com/products/it/software/security/info/vuls/hitachi-sec-2023-105/index.html | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
08 Mar 2023, 18:20
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://www.hitachi.com/products/it/software/security/info/vuls/hitachi-sec-2023-105/index.html - Vendor Advisory | |
CWE | CWE-295 | |
CPE | cpe:2.3:a:hitachi:ops_center_analyzer:*:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:x64:* cpe:2.3:a:hitachi:infrastructure_analytics_advisor:*:*:*:*:*:*:*:* |
|
First Time |
Hitachi
Hitachi infrastructure Analytics Advisor Hitachi ops Center Analyzer Linux Linux linux Kernel |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.1 |
28 Feb 2023, 03:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-02-28 03:15
Updated : 2023-03-08 18:20
NVD link : CVE-2022-4895
Mitre link : CVE-2022-4895
CVE.ORG link : CVE-2022-4895
JSON object : View
Products Affected
hitachi
- ops_center_analyzer
- infrastructure_analytics_advisor
linux
- linux_kernel
CWE
CWE-295
Improper Certificate Validation