Patches: Hitachi Infrastructure Analytics and Ops Center are vulnerable
Two security vulnerabilities threaten Hitachi Infrastructure Analytics and Ops Center. Attackers can bypass login.
(Image: Tatiana Popova/Shutterstock.com)
Vulnerabilities in Hitachi's analysis and IT management software Infrastructure Analytics and Ops Center on Linux endanger systems. At least one security patch is available for download.
Patch status unclear
The security vulnerabilities listed in a warning message (CVE-2025-66444, CE-2025-66445) are classified with a threat level of "high". Malicious code can be executed in the course of a Cross-Site Scripting (XSS) attack. The second vulnerability allows attackers to bypass authentication. How attacks could occur in both cases is not yet known.
Videos by heise
In the warning message, the developers only mention the repaired 11.0.5-00 version of Ops Center Analyzer. Whether a patch is also available for Infrastructure Analytics Advisor is currently unknown.
(des)