Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%
Get alerts for future matching vulnerabilitiesLog in to subscribe
I. Basic Information for CVE-2022-36407
Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Information Exposure Vulnerability in Hitachi Disk Array Systems
Source: NVD (National Vulnerability Database)
Vulnerability Description
Insertion of Sensitive Information into Log File vulnerability in Hitachi Virtual Storage Platform, Hitachi Virtual Storage Platform VP9500, Hitachi Virtual Storage Platform G1000, G1500, Hitachi Virtual Storage Platform F1500, Hitachi Virtual Storage Platform 5100, 5500, 5100H, 5500H, Hitachi Virtual Storage Platform 5200, 5600, 5200H, 5600H, Hitachi Unified Storage VM, Hitachi Virtual Storage Platform G100, G200, G400, G600, G800, Hitachi Virtual Storage Platform F400, F600, F800, Hitachi Virtual Storage Platform G130, G150, G350, G370, G700, G900, Hitachi Virtual Storage Platform F350, F370, F700, F900, Hitachi Virtual Storage Platform E390, E590, E790, E990, E1090, E390H, E590H, E790H, E1090H allows local users to gain sensitive information.This issue affects Hitachi Virtual Storage Platform: before DKCMAIN Ver. 70-06-74-00/00, SVP Ver. 70-06-58/00; Hitachi Virtual Storage Platform VP9500: before DKCMAIN Ver. 70-06-74-00/00, SVP Ver. 70-06-58/00; Hitachi Virtual Storage Platform G1000, G1500: before DKCMAIN Ver. 80-06-92-00/00, SVP Ver. 80-06-87/00; Hitachi Virtual Storage Platform F1500: before DKCMAIN Ver. 80-06-92-00/00, SVP Ver. 80-06-87/00; Hitachi Virtual Storage Platform 5100, 5500,5100H, 5500H: before DKCMAIN Ver. 90-08-81-00/00, SVP Ver. 90-08-81/00, before DKCMAIN Ver. 90-08-62-00/00, SVP Ver. 90-08-62/00, before DKCMAIN Ver. 90-08-43-00/00, SVP Ver. 90-08-43/00; Hitachi Virtual Storage Platform 5200, 5600,5200H, 5600H: before DKCMAIN Ver. 90-08-81-00/00, SVP Ver. 90-08-81/00, before DKCMAIN Ver. 90-08-62-00/00, SVP Ver. 90-08-62/00, before DKCMAIN Ver. 90-08-43-00/00, SVP Ver. 90-08-43/00; Hitachi Unified Storage VM: before DKCMAIN Ver. 73-03-75-X0/00, SVP Ver. 73-03-74/00, before DKCMAIN Ver. 73(75)-03-75-X0/00, SVP Ver. 73(75)-03-74/00; Hitachi Virtual Storage Platform G100, G200, G400, G600, G800: before DKCMAIN Ver. 83-06-19-X0/00, SVP Ver. 83-06-20-X0/00, before DKCMAIN Ver. 83-05-47-X0/00, SVP Ver. 83-05-51-X0/00; Hitachi Virtual Storage Platform F400, F600, F800: before DKCMAIN Ver. 83-06-19-X0/00, SVP Ver. 83-06-20-X0/00, before DKCMAIN Ver. 83-05-47-X0/00, SVP Ver. 83-05-51-X0/00; Hitachi Virtual Storage Platform G130, G150, G350, G370, G700, G900: before DKCMAIN Ver. 88-08-09-XX/00, SVP Ver. 88-08-11-X0/02; Hitachi Virtual Storage Platform F350, F370, F700, F900: before DKCMAIN Ver. 88-08-09-XX/00, SVP Ver. 88-08-11-X0/02; Hitachi Virtual Storage Platform E390, E590, E790, E990, E1090, E390H, E590H, E790H, E1090H: before DKCMAIN Ver. 93-06-81-X0/00, SVP Ver. 93-06-81-X0/00, before DKCMAIN Ver. 93-06-62-X0/00, SVP Ver. 93-06-62-X0/00, before DKCMAIN Ver. 93-06-43-X0/00, SVP Ver. 93-06-43-X0/00.
Source: NVD (National Vulnerability Database)
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Source: NVD (National Vulnerability Database)
Vulnerability Type
通过日志文件的信息暴露
Source: NVD (National Vulnerability Database)
Vulnerability Title
Hitachi Virtual Storage Platform 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Hitachi Virtual Storage Platform是日本日立制作所(Hitachi)公司的一系列用于数据中心的计算机数据存储系统。 Hitachi Virtual Storage Platform存在安全漏洞,该漏洞源于将敏感信息插入了日志文件,导致存在敏感信息泄露漏洞。受影响的产品和版本:Hitachi Virtual Storage Platform DKCMAIN Ver.70-06-74-00/00之前版本,SVP Ver.70-06-58/00之前版本;Hitachi Virtua
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)
Affected Products
VendorProductAffected VersionsCPESubscribe
HitachiHitachi Virtual Storage Platform 0 ~ DKCMAIN Ver. 70-06-74-00/00, SVP Ver. 70-06-58/00 -
HitachiHitachi Virtual Storage Platform VP9500 0 ~ DKCMAIN Ver. 70-06-74-00/00, SVP Ver. 70-06-58/00 -
HitachiHitachi Virtual Storage Platform G1000, G1500 0 ~ DKCMAIN Ver. 80-06-92-00/00, SVP Ver. 80-06-87/00 -
HitachiHitachi Virtual Storage Platform F1500 0 ~ DKCMAIN Ver. 80-06-92-00/00, SVP Ver. 80-06-87/00 -
HitachiHitachi Virtual Storage Platform 5100, 5500, 5100H, 5500H 0 ~ DKCMAIN Ver. 90-08-81-00/00, SVP Ver. 90-08-81/00 -
HitachiHitachi Virtual Storage Platform 5200, 5600, 5200H, 5600H 0 ~ DKCMAIN Ver. 90-08-81-00/00, SVP Ver. 90-08-81/00 -
HitachiHitachi Unified Storage VM 0 ~ DKCMAIN Ver. 73-03-75-X0/00, SVP Ver. 73-03-74/00 -
HitachiHitachi Virtual Storage Platform G100, G200, G400, G600, G800 0 ~ DKCMAIN Ver. 83-06-19-X0/00, SVP Ver. 83-06-20-X0/00 -
HitachiHitachi Virtual Storage Platform F400, F600, F800 0 ~ DKCMAIN Ver. 83-06-19-X0/00, SVP Ver. 83-06-20-X0/00 -
HitachiHitachi Virtual Storage Platform G130, G150, G350, G370, G700, G900 0 ~ DKCMAIN Ver. 88-08-09-XX/00, SVP Ver. 88-08-11-X0/02 -
HitachiHitachi Virtual Storage Platform F350, F370, F700, F900 0 ~ DKCMAIN Ver. 88-08-09-XX/00, SVP Ver. 88-08-11-X0/02 -
HitachiHitachi Virtual Storage Platform E390, E590, E790, E990, E1090, E390H, E590H, E790H, E1090H 0 ~ DKCMAIN Ver. 93-06-81-X0/00, SVP Ver. 93-06-81-X0/00 -
II. Public POCs for CVE-2022-36407
#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC
III. Intelligence Information for CVE-2022-36407
Please Login to view more intelligence information
IV. Related Vulnerabilities
V. Comments for CVE-2022-36407

No comments yet


Leave a comment