CVE-2023-6538
11.12.2023, 18:15
SMU versions prior to 14.8.7825.01 are susceptible to unintended information disclosure, through URL manipulation. Authenticated users in Storage, Server or combined Server+Storage administrative roles are able to access SMU configuration backup, that would normally be barred to those specific administrative roles.Enginsight
Vendor | Product | Version |
---|---|---|
hitachi | system_management_unit_firmware | 𝑥 < 14.8.7825.01 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References