Hitachi JP1/IT Desktop Management 2 - Smart Device Manager XML External Entity Vulnerability

Vulnerability

An XML External Entity (XXE) vulnerability has been identified in Hitachi JP1/IT Desktop Management 2 - Smart Device Manager for Windows. This vulnerability affects versions 12-00 prior to 12-00-08, 11-10 through 11-10-08, 11-00 through 11-00-05, and 10-50 through 10-50-06.

Impact

Exploitation of this vulnerability allows for XML External Entity processing, which can lead to the disclosure of internal files, the ability to perform a denial-of-service attack, or potentially execute arbitrary code, depending on the context.

Remediation

Users can upgrade to JP1/IT Desktop Management 2 - Smart Device Manager version 12-00-08 to address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.6
exploitability
7.4
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.