CVE-2020-36605

MEDIUM

Hitachi Infrastructure Analytics Advisor <4.4.0-00, Hitachi Ops Cen...

Title source: llm
STIX 2.1

Description

Incorrect Default Permissions vulnerability in Hitachi Infrastructure Analytics Advisor on Linux (Analytics probe component), Hitachi Ops Center Analyzer on Linux (Analyzer probe component), Hitachi Ops Center Viewpoint on Linux (Viewpoint RAID Agent component) allows local users to read and write specific files. This issue affects Hitachi Infrastructure Analytics Advisor: from 2.0.0-00 through 4.4.0-00; Hitachi Ops Center Analyzer: from 10.0.0-00 before 10.9.0-00; Hitachi Ops Center Viewpoint: from 10.8.0-00 before 10.9.0-00.

References (1)

Core 1

Scores

CVSS v3 6.6
EPSS 0.0003
EPSS Percentile 9.0%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-276
Status published
Products (3)
hitachi/infrastructure_analytics_advisor 2.0.0-00 - 4.4.0-00
hitachi/ops_center_analyzer 10.0.0-00 - 10.9.0-00
hitachi/ops_center_viewpoint 10.8.0-00 - 10.9.0-00
Published Nov 01, 2022
Tracked Since Feb 18, 2026