CVE-2024-21840: Hitachi Storage Plug-In

High severity, CVSS 7.1. EPSS: 0.1% chance of exploitation in the next 30 days.

Incorrect Default Permissions vulnerability in Hitachi Storage Plug-in for VMware vCenter allows local users to read and write specific files. This issue affects Hitachi Storage Plug-in for VMware vCenter: from 04.0.0 through 04.9.2.

Affected products

  • Hitachi Storage Plug-In: from 04.0.0, before 04.10.0 (fixed in 04.10.0)

Published 2024-01-30. Last modified 2026-06-17.