CVE-2023-34143

Improper Validation of Certificate with Host Mismatch vulnerability in Hitachi Device Manager on Windows, Linux (Device Manager Server, Device Manager Agent, Host Data Collector components) allows Man in the Middle Attack.This issue affects Hitachi Device Manager: before 8.8.5-02.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:hitachi:device_manager:*:*:*:*:*:*:*:*
OR cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

27 Jul 2023, 17:06

Type Values Removed Values Added
CWE CWE-295
First Time Microsoft windows
Microsoft
Linux linux Kernel
Hitachi
Hitachi device Manager
Linux
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.1
CPE cpe:2.3:a:hitachi:device_manager:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
References (MISC) https://www.hitachi.com/products/it/software/security/info/vuls/hitachi-sec-2023-125/index.html - (MISC) https://www.hitachi.com/products/it/software/security/info/vuls/hitachi-sec-2023-125/index.html - Vendor Advisory

18 Jul 2023, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-07-18 03:15

Updated : 2024-02-28 20:33


NVD link : CVE-2023-34143

Mitre link : CVE-2023-34143

CVE.ORG link : CVE-2023-34143


JSON object : View

Products Affected

hitachi

  • device_manager

linux

  • linux_kernel

microsoft

  • windows
CWE
CWE-295

Improper Certificate Validation

CWE-297

Improper Validation of Certificate with Host Mismatch