Hitachi Storage Navigator Remote Code Execution Vulnerability

Vulnerability

A remote code execution vulnerability exists in Hitachi Storage Navigator and the maintenance console of several Virtual Storage Platform models, including G-series, F-series, E-series, and One Block versions. The vulnerability is present in specific software releases prior to certain DKCMAIN and SVP versions. The issue allows unauthorized users to execute arbitrary code on the affected systems remotely.

Impact

Exploitation of this vulnerability allows for remote code execution on the affected systems.

Remediation

Users are advised to replace the microcode with the modified version. Specific guidance on downloading the updated microcode can be found on the Hitachi Vulnerability Information page for this security issue.

Added: May 7, 2026, 9:22 AM
Updated: May 7, 2026, 9:22 AM

Vulnerability Rating

Custom Algorithm
spread
0.3
impact
7.5
exploitability
6.4
remediation
7.7
relevance
7.7
threat
0.0
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.