CVE Vulnerabilities

CVE-2022-41553

Insertion of Sensitive Information into Log File

Published: Nov 01, 2022 | Modified: Nov 21, 2024
CVSS 3.x
5.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Insertion of Sensitive Information into Temporary File vulnerability in Hitachi Infrastructure Analytics Advisor on Linux (Analytics probe component), Hitachi Ops Center Analyzer on Linux (Hitachi Ops Center Analyzer probe component) allows local users to gain sensitive information. This issue affects Hitachi Infrastructure Analytics Advisor: from 2.0.0-00 through 4.4.0-00; Hitachi Ops Center Analyzer: from 10.0.0-00 before 10.9.0-00.

Weakness

The product writes sensitive information to a log file.

Affected Software

Name Vendor Start Version End Version
Infrastructure_analytics_advisor Hitachi 2.0.0-00 (including) 4.4.0-00 (including)

Potential Mitigations

References