CVE-2022-4146
HIGHHitachi Replication Manager <8.8.5-02 - Code Injection
Title source: llmDescription
Expression Language Injection vulnerability in Hitachi Replication Manager on Windows, Linux, Solaris allows Code Injection.This issue affects Hitachi Replication Manager: before 8.8.5-02.
References (1)
Core 1
Core References
Vendor Advisory vendor-advisory
https://www.hitachi.com/products/it/software/security/info/vuls/hitachi-sec-2023-123/index.html
Scores
CVSS v3
7.3
EPSS
0.0045
EPSS Percentile
35.6%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
yes
Technical Impact
partial
Details
CWE
CWE-917
Status
published
Products (1)
hitachi/replication_manager
< 8.8.5-02
Published
Jul 18, 2023
Tracked Since
Feb 18, 2026