Vulnerability Details CVE-2021-29645
Hitachi JP1/IT Desktop Management 2 Agent 9 through 12 calls the SendMessageTimeoutW API with arbitrary arguments via a local pipe, leading to a local privilege escalation vulnerability. An attacker who exploits this issue could execute arbitrary code on the local system.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 13.1%
CVSS Severity
CVSS v3 Score 7.0
CVSS v2 Score 4.6
Products affected by CVE-2021-29645
-
cpe:2.3:a:hitachi:it_operations_director:*
-
cpe:2.3:a:hitachi:it_operations_director:02-50
-
cpe:2.3:a:hitachi:it_operations_director:02-50-01
-
cpe:2.3:a:hitachi:it_operations_director:02-50-06
-
cpe:2.3:a:hitachi:it_operations_director:02-50-07
-
cpe:2.3:a:hitachi:it_operations_director:03-00
-
cpe:2.3:a:hitachi:it_operations_director:03-00-04
-
cpe:2.3:a:hitachi:it_operations_director:03-00-07
-
cpe:2.3:a:hitachi:it_operations_director:03-00-08
-
cpe:2.3:a:hitachi:it_operations_director:03-00-12
-
cpe:2.3:a:hitachi:it_operations_director:04-00
-
cpe:2.3:a:hitachi:it_operations_director:04-00-01
-
cpe:2.3:a:hitachi:job_management_partner_1/it_desktop_management-manager:*
-
cpe:2.3:a:hitachi:job_management_partner_1/it_desktop_management-manager:09-50
-
cpe:2.3:a:hitachi:job_management_partner_1/it_desktop_management-manager:09-50-03
-
cpe:2.3:a:hitachi:job_management_partner_1/it_desktop_management-manager:10-01
-
cpe:2.3:a:hitachi:job_management_partner_1/it_desktop_management_2-manager:*
-
cpe:2.3:a:hitachi:job_management_partner_1/remote_control_agent:*
-
cpe:2.3:a:hitachi:job_management_partner_1/software_distribution_client:*
-
cpe:2.3:a:hitachi:job_management_partner_1/software_distribution_manager:*
-
cpe:2.3:a:hitachi:jp1/it_desktop_management-manager:*
-
cpe:2.3:a:hitachi:jp1/it_desktop_management-manager:09-51
-
cpe:2.3:a:hitachi:jp1/it_desktop_management-manager:09-51-05
-
cpe:2.3:a:hitachi:jp1/it_desktop_management-manager:10-00
-
cpe:2.3:a:hitachi:jp1/it_desktop_management-manager:10-00-02
-
cpe:2.3:a:hitachi:jp1/it_desktop_management-manager:10-01
-
cpe:2.3:a:hitachi:jp1/it_desktop_management-manager:10-01-02
-
cpe:2.3:a:hitachi:jp1/it_desktop_management_2-manager:*
-
cpe:2.3:a:hitachi:jp1/it_desktop_management_2-operations_director:*
-
cpe:2.3:a:hitachi:jp1/netm/dm_client-remote_control_feature:*
-
cpe:2.3:a:hitachi:jp1/netm/dm_client:*
-
cpe:2.3:a:hitachi:jp1/netm/dm_manager:*
-
cpe:2.3:a:hitachi:jp1/netm/remote_control_feature:*
-
cpe:2.3:a:hitachi:jp1/remote_control_feature:*
-
cpe:2.3:o:microsoft:windows:-