7.3
CVE-2022-3884
- EPSS 0.04%
- Veröffentlicht 28.02.2023 03:15:09
- Zuletzt bearbeitet 21.11.2024 07:20:26
- Quelle hirt@hitachi.co.jp
- CVE-Watchlists
- Unerledigt
Incorrect Default Permissions vulnerability in Hitachi Ops Center Analyzer on Windows (Hitachi Ops Center Analyzer RAID Agent component) allows local users to read and write specific files.This issue affects Hitachi Ops Center Analyzer: from 10.9.0-00 before 10.9.0-01.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Hitachi ≫ Ops Center Analyzer Version >= 10.9.0-00 < 10.9.1-00
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.04% | 0.121 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.1 | 1.8 | 5.2 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
|
| hirt@hitachi.co.jp | 7.3 | 2 | 4.7 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:L/A:N
|
CWE-276 Incorrect Default Permissions
During installation, installed file permissions are set to allow anyone to modify those files.