CVE-2024-4679: Folder Permission Vulnerability in JP1/Extensible SNMP Agent
Incorrect Default Permissions vulnerability in Hitachi JP1/Extensible SNMP Agent for Windows, Hitachi JP1/Extensible SNMP Agent on Windows, Hitachi Job Management Partner1/Extensible SNMP Agent on Windows allows File Manipulation.This issue affects JP1/Extensible SNMP Agent for Windows: from 12-00 before 12-00-01, from 11-00 through 11-00-; JP1/Extensible SNMP Agent: from 10-10 through 10-10-01, from 10-00 through 10-00-02, from 09-00 through 09-00-04; Job Management Partner1/Extensible SNMP Agent: from 10-10 through 10-10-01, from 10-00 through 10-00-02, from 09-00 through 09-00-04.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-4679?
CVE-2024-4679 has been classified with a critical severity level due to its potential for unauthorized file manipulation.
How do I fix CVE-2024-4679?
To mitigate CVE-2024-4679, it is crucial to upgrade to the latest version of the Hitachi JP1/Extensible SNMP Agent as recommended by Hitachi Security advisories.
What products are affected by CVE-2024-4679?
CVE-2024-4679 affects multiple versions of Hitachi JP1/Extensible SNMP Agent and Job Management Partner1 products, particularly those prior to version 12.00.
What type of vulnerability is CVE-2024-4679?
CVE-2024-4679 is classified as an Incorrect Default Permissions vulnerability, enabling potential file manipulation.
Are there workarounds for CVE-2024-4679?
The primary recommendation is to update to the secure versions rather than relying on workarounds, as they may not fully mitigate the risk.