CVE-2025-27523

high

Description

XXE vulnerability in Hitachi JP1/IT Desktop Management 2 - Smart Device Manager on Windows.This issue affects JP1/IT Desktop Management 2 - Smart Device Manager: from 12-00 before 12-00-08, from 11-10 through 11-10-08, from 11-00 through 11-00-05, from 10-50 through 10-50-06.

References

https://www.hitachi.com/products/it/software/security/info/vuls/hitachi-sec-2025-115/index.html

Details

Source: Mitre, NVD

Published: 2025-05-15

Updated: 2026-04-15

Risk Information

CVSS v2

Base Score: 7.1

Vector: CVSS2#AV:N/AC:H/Au:N/C:C/I:N/A:C

Severity: High

CVSS v3

Base Score: 8.7

Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:N/A:H

Severity: High

EPSS

EPSS: 0.00044