CVE-2023-34143

Improper Validation of Certificate with Host Mismatch vulnerability in Hitachi Device Manager on Windows, Linux (Device Manager Server, Device Manager Agent, Host Data Collector components) allows Man in the Middle Attack.This issue affects Hitachi Device Manager: before 8.8.5-02.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:hitachi:device_manager:*:*:*:*:*:*:*:*
OR cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

21 Nov 2024, 08:06

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 8.1
v2 : unknown
v3 : 5.6
References () https://www.hitachi.com/products/it/software/security/info/vuls/hitachi-sec-2023-125/index.html - Vendor Advisory () https://www.hitachi.com/products/it/software/security/info/vuls/hitachi-sec-2023-125/index.html - Vendor Advisory

27 Jul 2023, 17:06

Type Values Removed Values Added
CWE CWE-295
First Time Microsoft windows
Microsoft
Linux linux Kernel
Hitachi
Hitachi device Manager
Linux
CPE cpe:2.3:a:hitachi:device_manager:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.1
References (MISC) https://www.hitachi.com/products/it/software/security/info/vuls/hitachi-sec-2023-125/index.html - (MISC) https://www.hitachi.com/products/it/software/security/info/vuls/hitachi-sec-2023-125/index.html - Vendor Advisory

18 Jul 2023, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-07-18 03:15

Updated : 2024-11-21 08:06


NVD link : CVE-2023-34143

Mitre link : CVE-2023-34143

CVE.ORG link : CVE-2023-34143


JSON object : View

Products Affected

linux

  • linux_kernel

microsoft

  • windows

hitachi

  • device_manager
CWE
CWE-297

Improper Validation of Certificate with Host Mismatch

CWE-295

Improper Certificate Validation