CVE & Exploit Intelligence Database

Updated 56m ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

337,123 CVEs tracked 53,219 with exploits 4,686 exploited in wild 1,539 CISA KEV 3,912 Nuclei templates 37,757 vendors 42,422 researchers
10 results Clear all
CVE-2024-5828 8.6 HIGH EPSS 0.01
Hitachi Tuning Manager <8.8.7-00 - Code Injection
Expression Language Injection vulnerability in Hitachi Tuning Manager on Windows, Linux, Solaris allows Code Injection.This issue affects Hitachi Tuning Manager: before 8.8.7-00.
CWE-917 Aug 06, 2024
CVE-2023-6457 6.6 MEDIUM EPSS 0.00
Hitachi Tuning Manager <8.8.5-04 - Info Disclosure
Incorrect Default Permissions vulnerability in Hitachi Tuning Manager on Windows (Hitachi Tuning Manager server component) allows local users to read and write specific files.This issue affects Hitachi Tuning Manager: before 8.8.5-04.
CWE-276 Jan 16, 2024
CVE-2020-36695 6.6 MEDIUM EPSS 0.00
Hitachi Device Manager <8.8.5-02 - Info Disclosure
Incorrect Default Permissions vulnerability in Hitachi Device Manager on Linux (Device Manager Server component), Hitachi Tiered Storage Manager on Linux, Hitachi Replication Manager on Linux, Hitachi Tuning Manager on Linux (Hitachi Tuning Manager server, Hitachi Tuning Manager - Agent for RAID, Hitachi Tuning Manager - Agent for NAS components), Hitachi Compute Systems Manager on Linux allows File Manipulation.This issue affects Hitachi Device Manager: before 8.8.5-02; Hitachi Tiered Storage Manager: before 8.8.5-02; Hitachi Replication Manager: before 8.8.5-02; Hitachi Tuning Manager: before 8.8.5-02; Hitachi Compute Systems Manager: before 8.8.3-08.
CWE-276 Jul 18, 2023
CVE-2020-36611 6.6 MEDIUM EPSS 0.00
Hitachi Tuning Manager <8.8.5-00 - Info Disclosure
Incorrect Default Permissions vulnerability in Hitachi Tuning Manager on Linux (Hitachi Tuning Manager server, Hitachi Tuning Manager - Agent for RAID, Hitachi Tuning Manager - Agent for NAS, Hitachi Tuning Manager - Agent for SAN Switch components) allows local users to read and write specific files.This issue affects Hitachi Tuning Manager: before 8.8.5-00.
CWE-276 Jan 17, 2023
CVE-2018-21033 6.5 MEDIUM EPSS 0.00
Hitachi Device Manager < 8.6.2-00 - Improper Input Validation
A vulnerability in Hitachi Command Suite prior to 8.6.2-00, Hitachi Automation Director prior to 8.6.2-00 and Hitachi Infrastructure Analytics Advisor prior to 4.2.0-00 allow authenticated remote users to load an arbitrary Cascading Style Sheets (CSS) token sequence. Hitachi Command Suite includes Hitachi Device Manager, Hitachi Tiered Storage Manager, Hitachi Replication Manager, Hitachi Tuning Manager, Hitachi Global Link Manager and Hitachi Compute Systems Manager.
CWE-20 Feb 14, 2020
CVE-2019-17360 7.5 HIGH EPSS 0.01
Hitachi Device Manager < 8.7.0-00 - Denial of Service
A vulnerability in Hitachi Command Suite 7.x and 8.x before 8.7.0-00 allows an unauthenticated remote user to trigger a denial of service (DoS) condition because of Uncontrolled Resource Consumption.
CWE-400 Nov 12, 2019
CVE-2018-21026 7.5 HIGH EPSS 0.00
Hitachi Device Manager < 8.6.5-00 - Information Disclosure
A vulnerability in Hitachi Command Suite 7.x and 8.x before 8.6.5-00 allows an unauthenticated remote user to read internal information.
CWE-200 Nov 12, 2019
CVE-2018-14735 7.5 HIGH EPSS 0.00
Hitachi Command Suite 8.5.3 - Info Disclosure
An Information Exposure issue was discovered in Hitachi Command Suite 8.5.3. A remote attacker may be able to exploit a flaw in the permission of messaging that may allow for information exposure via a crafted message.
CWE-200 Aug 09, 2018
CVE-2014-4189 EPSS 0.00
Hitachi Tuning Manager <7.6.1-06,8.x <8.0.0-04 - XSS
Cross-site scripting (XSS) vulnerability in Hitachi Tuning Manager before 7.6.1-06 and 8.x before 8.0.0-04 and JP1/Performance Management - Manager Web Option 07-00 through 07-54 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
CWE-79 Jun 17, 2014
CVE-2014-4188 EPSS 0.00
Hitachi Tuning Manager <7.6.1-06,8.x <8.0.0-04 - CSRF
Cross-site request forgery (CSRF) vulnerability in Hitachi Tuning Manager before 7.6.1-06 and 8.x before 8.0.0-04 and JP1/Performance Management - Manager Web Option 07-00 through 07-54 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
CWE-352 Jun 17, 2014