« Volver al listado

CVE-2023-6814

Estado: AplazadaMedia (5.6)—

Insertion of Sensitive Information into Log File vulnerability in Hitachi Cosminexus Component Container allows local users to gain sensitive information.This issue affects Cosminexus Component Container: from 11-30 before 11-30-05, from 11-20 before 11-20-07, from 11-10 before 11-10-10, from 11-00 before 11-00-12, All versions of V8 and V9.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

⚠ Inferidas por IA a partir de la descripción — NVD aún no ha analizado esta CVE; no son CPE verificados.

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2023-6814",
  "cveTags": [],
  "metrics": {
    "ssvcV203": [
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "ssvcData": {
          "id": "CVE-2023-6814",
          "role": "CISA Coordinator",
          "options": [
            {
              "exploitation": "none"
            },
            {
              "automatable": "no"
            },
            {
              "technicalImpact": "partial"
            }
          ],
          "version": "2.0.3",
          "timestamp": "2024-03-12T13:30:31.864165Z"
        }
      }
    ],
    "cvssMetricV31": [
      {
        "type": "Secondary",
        "source": "hirt@hitachi.co.jp",
        "cvssData": {
          "scope": "CHANGED",
          "version": "3.1",
          "baseScore": 5.6,
          "attackVector": "LOCAL",
          "baseSeverity": "MEDIUM",
          "vectorString": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N",
          "integrityImpact": "NONE",
          "userInteraction": "NONE",
          "attackComplexity": "HIGH",
          "availabilityImpact": "NONE",
          "privilegesRequired": "LOW",
          "confidentialityImpact": "HIGH"
        },
        "impactScore": 4,
        "exploitabilityScore": 1.1
      }
    ]
  },
  "affected": [
    {
      "source": "hirt@hitachi.co.jp",
      "affectedData": [
        {
          "vendor": "Hitachi",
          "product": "Cosminexus Component Container",
          "versions": [
            {
              "status": "affected",
              "changes": [
                {
                  "at": "11-30-05",
                  "status": "unaffected"
                }
              ],
              "version": "11-30",
              "lessThan": "11-30-05",
              "versionType": "custom"
            },
            {
              "status": "affected",
              "changes": [
                {
                  "at": "11-20-07",
                  "status": "unaffected"
                }
              ],
              "version": "11-20",
              "lessThan": "11-20-07",
              "versionType": "custom"
            },
            {
              "status": "affected",
              "changes": [
                {
                  "at": "11-10-10",
                  "status": "unaffected"
                }
              ],
              "version": "11-10",
              "lessThan": "11-10-10",
              "versionType": "custom"
            },
            {
              "status": "affected",
              "changes": [
                {
                  "at": "11-00-12",
                  "status": "unaffected"
                }
              ],
              "version": "11-00",
              "lessThan": "11-00-12",
              "versionType": "custom"
            },
            {
              "status": "affected",
              "version": "08-00",
              "versionType": "custom",
              "lessThanOrEqual": "09-*"
            }
          ],
          "defaultStatus": "unaffected"
        }
      ]
    }
  ],
  "published": "2024-03-12T04:15:08.257",
  "references": [
    {
      "url": "https://www.hitachi.com/products/it/software/security/info/vuls/hitachi-sec-2024-118/index.html",
      "source": "hirt@hitachi.co.jp"
    },
    {
      "url": "https://www.hitachi.com/products/it/software/security/info/vuls/hitachi-sec-2024-118/index.html",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Deferred",
  "weaknesses": [
    {
      "type": "Secondary",
      "source": "hirt@hitachi.co.jp",
      "description": [
        {
          "lang": "en",
          "value": "CWE-532"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Insertion of Sensitive Information into Log File vulnerability in Hitachi Cosminexus Component Container allows local users to gain sensitive information.This issue affects Cosminexus Component Container: from 11-30 before 11-30-05, from 11-20 before 11-20-07, from 11-10 before 11-10-10, from 11-00 before 11-00-12, All versions of V8 and V9.\n\n"
    },
    {
      "lang": "es",
      "value": "La vulnerabilidad de inserción de información confidencial en el archivo de registro en Hitachi Cosminexus Component Container permite a los usuarios locales obtener información confidencial. Este problema afecta a Cosminexus Component Container: del 30 de noviembre al 30 de noviembre de 2005, del 20 de noviembre al 20 de noviembre de 2011. del 11-10 al 11-10-*, de 11-00 antes del 11-00-12, Todas las versiones de V8 y V9."
    }
  ],
  "lastModified": "2026-06-17T06:51:28.577",
  "sourceIdentifier": "hirt@hitachi.co.jp"
}