Hitachi Ops Center: Attacks on Hitachi storage infrastructure possible
Hitachi Ops Center Common Services is vulnerable under Linux. A secured version has been released.
A security vulnerability in Hitachi's Ops Center application suite for managing storage infrastructures allows attackers to launch attacks. So far, there is no information on attacks that are already underway. The software manufacturer does not currently specify how systems that have already been attacked can be detected. Admins should install the available security update as soon as possible.
Vulnerability closed
In a warning message, the developers list the vulnerability (CVE-2024-7125) with a threat level of"high". After successful attacks, attackers should be able to bypass authentication. However, it remains unclear how such an attack could take place.
The Linux version from Ops Center Common Services 10.9.3-00 is said to be at risk. The developers claim to have closed the gap in version 11.0.2-01. This version has been available since August 12, 2024. However, Hitachi has only now published the warning message.
(des)