ZeroHour

Vulnerabilities

219 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2026-9854
+2 in the same advisory: …9853 …9852
Local Privilege Escalation in Hitachi Energy MicroSCADA X SYS600

CVE-2026-9854 is a privilege escalation flaw in the role-based access control (RBAC) mechanism of Hitachi Energy MicroSCADA X SYS600 (CWE-303). A user who is authorized to use the SCADA system's engineering tools can leverage that access to elevate their privileges to administrator level on the underlying Windows host. Successful exploitation grants the attacker full control over the host machine, beyond the SCADA application itself. Any organization running MicroSCADA X SYS600 on Windows where users have access to the engineering tools is affected. There is no known exploitation in the wild, no public proof-of-concept, and a low predicted exploitation probability (EPSS 0.1%, not in CISA KEV).

Do: Check the Hitachi Energy security advisory (published by their CNA) for fixed MicroSCADA X SYS600 versions and apply the vendor patch as soon as it is available, since no specific version numbers are given here. In the meantime, restrict access to the engineering tools to trusted personnel, apply least-privilege on the underlying Windows hosts, and monitor for unexpected local administrator account or privilege changes. Utilities should inventory which SYS600 Windows hosts allow engineering-tool access, as only those are exposed to this local escalation path.

8.5
group max
<1%
  • Hitachi Energy MicroSCADA X SYS600
largeon the order of tens of thousands of utility SCADA/control-room Windows hosts worldwide
CVE-2026-2253
+2 in the same advisory: …2254 …2255
Hitachi Vantara Pentaho Data Integration & Analytics versions before 10.2.0.7 and 11.0.0.0, including 9.3.x and 8.3.x, does not prevent certain XML parsers from

Hitachi Vantara Pentaho Data Integration & Analytics versions before 10.2.0.7 and 11.0.0.0, including 9.3.x and 8.3.x, does not prevent certain XML parsers from resolving external entities.

NVD description · AI analysis pending
7.7
group max
<1%
  • hitachi vantara pentaho data integration and analytics
CVE-2025-11159
Hitachi Vantara Pentaho Data Integration & Analytics of all versions contain a JDBC driver for H2 databases which is vulnerable to external script execution whe

Hitachi Vantara Pentaho Data Integration & Analytics of all versions contain a JDBC driver for H2 databases which is vulnerable to external script execution when a new connection is created by a data source administrator.

NVD description · AI analysis pending
7.2<1%
  • hitachi vantara pentaho data integration and analytics
CVE-2025-2514
Improper restriction of excessive authentication attempts vulnerability in Hitachi Virtual Storage Platform G130, G150, G350, G370, G700, G900, F350, F370, F700

Improper restriction of excessive authentication attempts vulnerability in Hitachi Virtual Storage Platform G130, G150, G350, G370, G700, G900, F350, F370, F700, F900, Hitachi Virtual Storage Platform E390, E590, E790, E990, E1090, E390H, E590H, E790H, E1090H, Hitachi Virtual Storage Platform One Block 23, One Block 24, One Block 26, One Block 28. This issue affects Hitachi Virtual Storage Platform G130, G150, G350, G370, G700, G900, F350, F370, F700, F900, Hitachi Virtual Storage Platform E390, E590, E790, E990, E1090, E390H, E590H, E790H, E1090H, Hitachi Virtual Storage Platform One Block 23, One Block 24, One Block 26, One Block 28 : before DKCMAIN Ver 88-08-16-xx/00, GUM Ver. 88-08-20/00, before DKCMAIN Ver 93-07-26-xx/00, GUM Ver. 93-07-26/00, before DKCMAIN Ver A3-04-02-xx/00, EMS Ver. A3-04-02/00, before DKCMAIN Ver A3-03-41-xx/00, EMS Ver. A3-03-41/00, before DKCMAIN Ver A3-03-03-xx/00, EMS Ver. A3-03-02/00.

NVD description · AI analysis pending
5.3<1%
  • hitachi vsp e1090h firmware
  • hitachi vsp e790h firmware
  • hitachi vsp e590h firmware
  • +1 more
CVE-2025-9661
+1 in the same advisory: …1978
OS command injection vulneravility in the management gui (maintenance utility) of Hitachi Virtual Storage Platform One Block 23, 24, 26 and 28.

OS command injection vulneravility in the management gui (maintenance utility) of Hitachi Virtual Storage Platform One Block 23, 24, 26 and 28. This issue affects Hitachi Virtual Storage Platform One Block 23/24/26/28: before DKCMAIN A3-04-21-40/00, ESM A3-04-21/00.

NVD description · AI analysis pending
9.8<1%
  • hitachi virtual storage one block
CVE-2025-65115
+1 in the same advisory: …65116
Remote Code Execution Vulnerability in JP1/IT Desktop Management 2 - Manager on Windows, JP1/IT Desktop Management 2 - Operations Director on Windows, Job Manag

Remote Code Execution Vulnerability in JP1/IT Desktop Management 2 - Manager on Windows, JP1/IT Desktop Management 2 - Operations Director on Windows, Job Management Partner 1/IT Desktop Management 2 - Manager on Windows, JP1/IT Desktop Management - Manager on Windows, Job Management Partner 1/IT Desktop Management - Manager on Windows, JP1/NETM/DM Manager on Windows, JP1/NETM/DM Client on Windows, Job Management Partner 1/Software Distribution Manager on Windows, Job Management Partner 1/Software Distribution Client on Windows.This issue affects JP1/IT Desktop Management 2 - Manager: from 13-50 before 13-50-02, from 13-11 before 13-11-04, from 13-10 before 13-10-07, from 13-01 before 13-01-07, from 13-00 before 13-00-05, from 12-60 before 12-60-12, from 10-50 through 12-50-11; JP1/IT Desktop Management 2 - Operations Director: from 13-50 before 13-50-02, from 13-11 before 13-11-04, from 13-10 before 13-10-07, from 13-01 before 13-01-07, from 13-00 before 13-00-05, from 12-60 before 12-60-12, from 10-50 through 12-50-11; Job Management Partner 1/IT Desktop Management 2 - Manager: from 10-50 through 10-50-11; JP1/IT Desktop Management - Manager: from 09-50 through 10-10-16; Job Management Partner 1/IT Desktop Management - Manager: from 09-50 through 10-10-16; JP1/NETM/DM Manager: from 09-00 through 10-20-02; JP1/NETM/DM Client: from 09-00 through 10-20-02; Job Management Partner 1/Software Distribution Manager: from 09-00 through 09-51-13; Job Management Partner 1/Software Distribution Client: from 09-00 through 09-51-13.

NVD description · AI analysis pending
9.8
group max
<1%
  • hitachi job management partner 1\/it desktop management-manager
  • hitachi jp1\/it desktop management 2-manager
  • hitachi jp1\/it desktop management 2-operations director
  • +1 more
CVE-2026-2072
Cross-Site Scripting vulnerability in Hitachi Infrastructure Analytics Advisor (Analytics probe component), Hitachi Ops Center Analyzer.This issue affects Hitac

Cross-Site Scripting vulnerability in Hitachi Infrastructure Analytics Advisor (Analytics probe component), Hitachi Ops Center Analyzer.This issue affects Hitachi Infrastructure Analytics Advisor:; Hitachi Ops Center Analyzer: from 10.0.0-00 before 11.0.5-00.

NVD description · AI analysis pending
6.1<1%
  • hitachi infrastructure analytics advisor
  • hitachi ops center analyzer
CVE-2026-1166
Open Redirect vulnerability in Hitachi Ops Center Administrator.This issue affects Hitachi Ops Center Administrator:

Open Redirect vulnerability in Hitachi Ops Center Administrator.This issue affects Hitachi Ops Center Administrator: from 10.2.0 before 11.0.8.

NVD description · AI analysis pending
4.3<1%
  • hitachi ops center administrator
CVE-2025-11158
Hitachi Vantara Pentaho Data Integration & Analytics versions before 10.2.0.6, including 9.3.x and 8.3.x, do not restrict Groovy scripts in new PRPT reports pub

Hitachi Vantara Pentaho Data Integration & Analytics versions before 10.2.0.6, including 9.3.x and 8.3.x, do not restrict Groovy scripts in new PRPT reports published by users, allowing insertion of arbitrary scripts and leading to a RCE.

NVD description · AI analysis pending
9.1<1%
  • hitachi vantara pentaho data integration and analytics
CVE-2025-0976
+1 in the same advisory: …5781
Information Exposure Vulnerability in Hitachi Ops Center API Configuration Manager, Hitachi Configuration Manager.This issue affects Hitachi Ops Center API Conf

Information Exposure Vulnerability in Hitachi Ops Center API Configuration Manager, Hitachi Configuration Manager.This issue affects Hitachi Ops Center API Configuration Manager: from 10.0.0-00 before 11.0.4-00; Hitachi Configuration Manager: from 8.6.1-00 before 11.0.5-00.

NVD description · AI analysis pending
7.5
group max
<1%
  • hitachi configuration manager
  • hitachi ops center api configuration manager
CVE-2026-2460
+1 in the same advisory: …2459
A vulnerability exists in REB500 for an authenticated user with low-level privileges to access and alter the content of directories by using the DAC protocol th

A vulnerability exists in REB500 for an authenticated user with low-level privileges to access and alter the content of directories by using the DAC protocol that the user is not authorized to do so.

NVD description · AI analysis pending
7.6
group max
<1%
  • hitachienergy reb500 firmware
CVE-2026-1773
IEC 60870-5-104 used in RTU500:

IEC 60870-5-104 used in RTU500: Potential Denial of Service impact on reception of invalid U-format frame. Product is only affected if IEC 60870-5-104 bi-directional functionality is configured. Enabling secure communication following IEC 62351-3 does not remediate the vulnerability but mitigates the risk of exploitation.

NVD description · AI analysis pending
8.7<1%
  • hitachienergy rtu540 firmware
  • hitachienergy rtu560 firmware
  • hitachienergy rtu520 firmware
  • +1 more
CVE-2026-1772
RTU500 web interface:

RTU500 web interface: An unprivileged user can read user management information. The information cannot be accessed via the RTU500 web user interface but requires further tools like browser development utilities to access them without required privileges.

NVD description · AI analysis pending
5.3<1%
  • hitachienergy rtu520 firmware
  • hitachienergy rtu530 firmware
  • hitachienergy rtu540 firmware
  • +1 more
CVE-2025-39204
+4 in the same advisory: …39202 …39203 …39205 …39201
A vulnerability exists in the Web interface of the MicroSCADA X SYS600 product.

A vulnerability exists in the Web interface of the MicroSCADA X SYS600 product. The filtering query in the Web interface can be malformed, so returning data can leak unauthorized information to the user.

NVD description · AI analysis pending
8.5
group max
<1%
  • hitachienergy microscada x sys600
CVE-2024-41153
+1 in the same advisory: …41156
Command injection vulnerability in the Edge Computing UI for the TRO600 series radios that allows for the execution of arbitrary system commands.

Command injection vulnerability in the Edge Computing UI for the TRO600 series radios that allows for the execution of arbitrary system commands. If exploited, an attacker with write access to the web UI can execute commands on the device with root privileges, far more extensive than what the write privilege intends.

NVD description · AI analysis pending
7.2
group max
2%
  • hitachienergy tro610 firmware
  • hitachienergy tro620 firmware
  • hitachienergy tro670 firmware
CVE-2024-7940
+2 in the same advisory: …3982 …7941
The product exposes a service that is intended for local only to all network interfaces without any authentication.

The product exposes a service that is intended for local only to all network interfaces without any authentication.

NVD description · AI analysis pending
9.8
group max
<1%
  • hitachienergy microscada x sys600
CVE-2024-3980
+1 in the same advisory: …4872
The MicroSCADA Pro/X SYS600 product allows an authenticated user input to control or influence paths or file names that are used in filesystem operations.

The MicroSCADA Pro/X SYS600 product allows an authenticated user input to control or influence paths or file names that are used in filesystem operations. If exploited the vulnerability allows the attacker to access or modify system files or other files that are critical to the application.

NVD description · AI analysis pending
8.8<1%
  • hitachienergy microscada pro sys600
  • hitachienergy microscada x sys600
CVE-2024-7125
Authentication Bypass vulnerability in Hitachi Ops Center Common Services.This issue affects Hitachi Ops Center Common Services:

Authentication Bypass vulnerability in Hitachi Ops Center Common Services.This issue affects Hitachi Ops Center Common Services: from 10.9.3-00 before 11.0.2-01.

NVD description · AI analysis pending
7.8<1%
  • hitachi ops center common services
CVE-2024-5828
Expression Language Injection vulnerability in Hitachi Tuning Manager on Windows, Linux, Solaris allows Code Injection.This issue affects Hitachi Tuning Manager:

Expression Language Injection vulnerability in Hitachi Tuning Manager on Windows, Linux, Solaris allows Code Injection.This issue affects Hitachi Tuning Manager: before 8.8.7-00.

NVD description · AI analysis pending
9.8<1%
  • hitachi tuning manager
CVE-2024-2819
Incorrect Default Permissions, Improper Preservation of Permissions vulnerability in Hitachi Ops Center Common Services allows File Manipulation.This issue affe

Incorrect Default Permissions, Improper Preservation of Permissions vulnerability in Hitachi Ops Center Common Services allows File Manipulation.This issue affects Hitachi Ops Center Common Services: before 11.0.2-00.

NVD description · AI analysis pending
6.5<1%
  • hitachi ops center common services
CVE-2024-28982
+2 in the same advisory: …28983 …28984
Hitachi Vantara Pentaho Business Analytics Server versions before 10.1.0.0 and 9.3.0.7, including 8.3.x do not correctly protect the ACL service endpoint of the

Hitachi Vantara Pentaho Business Analytics Server versions before 10.1.0.0 and 9.3.0.7, including 8.3.x do not correctly protect the ACL service endpoint of the Pentaho User Console against XML External Entity Reference.

NVD description · AI analysis pending
8.2
group max
<1%
  • hitachi pentaho business analytics server
CVE-2024-2013
An authentication bypass vulnerability exists in the FOXMAN-UN/UNEM server / API Gateway component that if exploited allows attackers without any access to inte

An authentication bypass vulnerability exists in the FOXMAN-UN/UNEM server / API Gateway component that if exploited allows attackers without any access to interact with the services and the post-authentication attack surface.

NVD description · AI analysis pending
10.0
group max
<1%
  • hitachienergy foxman-un
  • hitachienergy unem
CVE-2023-5617
Hitachi Vantara Pentaho Data Integration & Analytics versions before 10.1.0.0 and 9.3.0.6, including 9.5.x and 8.3.x, display the version of Tomcat when a serve

Hitachi Vantara Pentaho Data Integration & Analytics versions before 10.1.0.0 and 9.3.0.6, including 9.5.x and 8.3.x, display the version of Tomcat when a server error is encountered.

NVD description · AI analysis pending
5.3<1%
  • hitachi vantara pentaho data integration and analytics
CVE-2024-0715
Expression Language Injection vulnerability in Hitachi Global Link Manager on Windows allows Code Injection.This issue affects Hitachi Global Link Manager:

Expression Language Injection vulnerability in Hitachi Global Link Manager on Windows allows Code Injection.This issue affects Hitachi Global Link Manager: before 8.8.7-03.

NVD description · AI analysis pending
9.8<1%
  • hitachi global link manager
CVE-2024-21840
Incorrect Default Permissions vulnerability in Hitachi Storage Plug-in for VMware vCenter allows local users to read and write specific files.

Incorrect Default Permissions vulnerability in Hitachi Storage Plug-in for VMware vCenter allows local users to read and write specific files. This issue affects Hitachi Storage Plug-in for VMware vCenter: from 04.0.0 through 04.9.2.

NVD description · AI analysis pending
7.1<1%
  • hitachi storage plug-in
CVE-2023-6457
Incorrect Default Permissions vulnerability in Hitachi Tuning Manager on Windows (Hitachi Tuning Manager server component) allows local users to read and write

Incorrect Default Permissions vulnerability in Hitachi Tuning Manager on Windows (Hitachi Tuning Manager server component) allows local users to read and write specific files.This issue affects Hitachi Tuning Manager: before 8.8.5-04.

NVD description · AI analysis pending
7.1<1%
  • hitachi tuning manager