CVE-2025-66444

HIGH

Hitachi Infrastructure Analytics Advisor <11.0.5.00 - XSS

Title source: llm
STIX 2.1

Description

Cross-site Scripting vulnerability in Hitachi Infrastructure Analytics Advisor (Data Center Analytics component) and Hitachi Ops Center Analyzer (Hitachi Ops Center Analyzer detail view component).This issue affects Hitachi Infrastructure Analytics Advisor:; Hitachi Ops Center Analyzer: from 10.0.0-00 before 11.0.5-00.

References (1)

Core 1

Scores

CVSS v3 8.2
EPSS 0.0003
EPSS Percentile 8.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:L/A:L

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-79
Status published
Products (2)
Hitachi/Hitachi Infrastructure Analytics Advisor
Hitachi/Hitachi Ops Center Analyzer 10.0.0-00 - 11.0.5-00
Published Dec 24, 2025
Tracked Since Feb 18, 2026