Vulnerability Description
Remote Code Execution Vulnerability in Hitachi Storage Navigator and the maintenance console in Hitachi Virtual Storage Platform G130, G150, G350, G370, G700, G900, F350, F370, F700, F900, Hitachi Virtual Storage Platform E390, E590, E790, E990, E1090, E390H, E590H, E790H, E1090H, Hitachi Virtual Storage Platform One Block 23, One Block 24, One Block 26, One Block 28. This issue affects Virtual Storage Platform G130, G150, G350, G370, G700, G900, F350, F370, F700, F900, Hitachi Virtual Storage Platform E390, E590, E790, E990, E1090, E390H, E590H, E790H, E1090H, Hitachi Virtual Storage Platform One Block 23, One Block 24, One Block 26, One Block 28 : before DKCMAIN Ver. 88-08-16-xx/00, SVP Ver. 88-08-18-xx/00, before DKCMAIN Ver. 93-07-26-xx/00, SVP Ver. 93-07-26-xx/00, before DKCMAIN Ver. A3-04-02-xx/00, MPC Ver. A3-04-02-xx/00, before DKCMAIN Ver. A3-03-41-xx/00, MPC Ver. A3-03-41-xx/00, before DKCMAIN Ver. A3-03-03-xx/00, MPC Ver. A3-03-03-xx/00.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Hitachi | Virtual Storage One Block | 23 |
| Hitachi | Vsp G130 Firmware | - |
| Hitachi | Vsp G130 | - |
| Hitachi | Vsp G150 Firmware | - |
| Hitachi | Vsp G150 | - |
| Hitachi | Vsp G350 Firmware | - |
| Hitachi | Vsp G350 | - |
| Hitachi | Vsp G370 Firmware | - |
| Hitachi | Vsp G370 | - |
| Hitachi | Vsp G700 Firmware | - |
| Hitachi | Vsp G700 | - |
| Hitachi | Vsp G900 Firmware | - |
| Hitachi | Vsp G900 | - |
| Hitachi | Vsp F350 Firmware | - |
| Hitachi | Vsp F350 | - |
| Hitachi | Vsp F370 Firmware | - |
| Hitachi | Vsp F370 | - |
| Hitachi | Vsp F700 Firmware | - |
| Hitachi | Vsp F700 | - |
| Hitachi | Vsp F900 Firmware | - |
Related Weaknesses (CWE)
References
FAQ
What is CVE-2025-1978?
CVE-2025-1978 is a vulnerability with a CVSS score of 8.3 (HIGH). Remote Code Execution Vulnerability in Hitachi Storage Navigator and the maintenance console in Hitachi Virtual Storage Platform G130, G150, G350, G370, G700, G900, F350, F370, F700, F900, Hitachi Vir...
How severe is CVE-2025-1978?
CVE-2025-1978 has been rated HIGH with a CVSS base score of 8.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-1978?
Check the references section above for vendor advisories and patch information. Affected products include: Hitachi Virtual Storage One Block, Hitachi Vsp G130 Firmware, Hitachi Vsp G130, Hitachi Vsp G150 Firmware, Hitachi Vsp G150.