First published: Tue Jul 18 2023(Updated: )
Improper Validation of Certificate with Host Mismatch vulnerability in Hitachi Device Manager on Windows, Linux (Device Manager Server, Device Manager Agent, Host Data Collector components) allows Man in the Middle Attack.This issue affects Hitachi Device Manager: before 8.8.5-02.
Credit: hirt@hitachi.co.jp hirt@hitachi.co.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Hitachi Device Manager | <8.8.5-02 | |
Linux Linux kernel | ||
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-34143 is an improper validation of certificate with host mismatch vulnerability in Hitachi Device Manager on Windows and Linux, which allows for a Man-in-the-Middle attack.
The Device Manager Server, Device Manager Agent, and Host Data Collector components of Hitachi Device Manager are affected by CVE-2023-34143.
CVE-2023-34143 has a severity rating of 8.1, which is considered high.
To fix CVE-2023-34143, you should update Hitachi Device Manager to version 8.8.5-02 or later.
More information about CVE-2023-34143 can be found on the Hitachi Product Security website at the following link: [https://www.hitachi.com/products/it/software/security/info/vuls/hitachi-sec-2023-125/index.html]