High severity7.6NVD Advisory· Published Dec 5, 2023· Updated Jun 17, 2026
CVE-2023-5808
CVE-2023-5808
Description
SMU versions prior to 14.8.7825.01 are susceptible to unintended information disclosure, through URL manipulation. Authenticated users in a Storage administrative role are able to access HNAS configuration backup and diagnostic data, that would normally be barred to that specific administrative role.
Affected products
2- cpe:2.3:a:hitachi:vantara_hitachi_network_attached_storage:*:*:*:*:*:*:*:*Range: <=14.8.7825.01
- Range: 6.0
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.