CVE-2025-65115

critical
Published 2026-04-07 · Modified 2026-04-28
CVSS v3
9.8
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS v2
VIR risk
9.8

Description

Remote Code Execution Vulnerability in JP1/IT Desktop Management 2 - Manager on Windows, JP1/IT Desktop Management 2 - Operations Director on Windows, Job Management Partner 1/IT Desktop Management 2 - Manager on Windows, JP1/IT Desktop Management - Manager on Windows, Job Management Partner 1/IT Desktop Management - Manager on Windows, JP1/NETM/DM Manager on Windows, JP1/NETM/DM Client on Windows, Job Management Partner 1/Software Distribution Manager on Windows, Job Management Partner 1/Software Distribution Client on Windows.This issue affects JP1/IT Desktop Management 2 - Manager: from 13-50 before 13-50-02, from 13-11 before 13-11-04, from 13-10 before 13-10-07, from 13-01 before 13-01-07, from 13-00 before 13-00-05, from 12-60 before 12-60-12, from 10-50 through 12-50-11; JP1/IT Desktop Management 2 - Operations Director: from 13-50 before 13-50-02, from 13-11 before 13-11-04, from 13-10 before 13-10-07, from 13-01 before 13-01-07, from 13-00 before 13-00-05, from 12-60 before 12-60-12, from 10-50 through 12-50-11; Job Management Partner 1/IT Desktop Management 2 - Manager: from 10-50 through 10-50-11; JP1/IT Desktop Management - Manager: from 09-50 through 10-10-16; Job Management Partner 1/IT Desktop Management - Manager: from 09-50 through 10-10-16; JP1/NETM/DM Manager: from 09-00 through 10-20-02; JP1/NETM/DM Client: from 09-00 through 10-20-02; Job Management Partner 1/Software Distribution Manager: from 09-00 through 09-51-13; Job Management Partner 1/Software Distribution Client: from 09-00 through 09-51-13.

Predictions

Exploit likelihood
97%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: hirt@hitachi.co.jp — https://www.hitachi.com/products/it/software/security/info/vuls/hitachi-sec-2026-118/index.html

Application impact

VendorProductVersionsFixed
hitachijob_management_partner_1\/it_desktop_management-manager{"startIncluding":"09-50","endIncluding":"09-50-03"}
hitachijp1\/it_desktop_management_2-manager{"startIncluding":"10-50","endIncluding":"10-50-12"}
hitachijp1\/it_desktop_management_2-operations_director{"startIncluding":"10-50","endIncluding":"10-50-12"}
hitachijp1\/netm\/dm_manager{"startIncluding":"09-00","endIncluding":"09-00-14"}
hitachijp1\/netm\/dm_client{"startIncluding":"09-00","endIncluding":"09-00-14"}

References

CWEs

CWE-73

Verify integrity in audit chain (admin only). AS-IS.