7.1
CVE-2023-6457
- EPSS 0.03%
- Veröffentlicht 16.01.2024 01:15:34
- Zuletzt bearbeitet 21.11.2024 08:43:53
- Quelle hirt@hitachi.co.jp
- CVE-Watchlists
- Unerledigt
File and Directory Permission Vulnerability in Hitachi Tuning Manager
Incorrect Default Permissions vulnerability in Hitachi Tuning Manager on Windows (Hitachi Tuning Manager server component) allows local users to read and write specific files.This issue affects Hitachi Tuning Manager: before 8.8.5-04.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Hitachi ≫ Tuning Manager Version < 8.8.5-04
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.03% | 0.07 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.1 | 1.8 | 5.2 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
|
| hirt@hitachi.co.jp | 6.6 | 1.8 | 4.7 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H
|
CWE-276 Incorrect Default Permissions
During installation, installed file permissions are set to allow anyone to modify those files.