[Japanese]

JVNDB-2026-036534

Information Regarding Reported Vulnerabilities in Hitachi Coding Software Suite (HCSS)

Overview

Hitachi Coding Software Suite (hereinafter referred to as "HCSS") contains multiple vulnerabilities.
Michael Heinzl reported these vulnerabilities.
CVSS Severity (What is CVSS?)

Affected Products


Hitachi, Ltd
  • Hitachi Coding Software Suite V3.3.0 and earlier
  • Hitachi Coding Software Suite V4.0.0

Please refer to Vendor Information for more details.
Impact

Regarding the impact of the vulnerability, please refer to the vendor advisory.
Solution

Please refer to the 'Vendor Information' section for the official countermeasure and take appropriate action.
Vendor Information

Hitachi, Ltd
CWE (What is CWE?)

  1. Missing Authentication for Critical Function(CWE-306) [Vendor Evaluation]
  2. Cleartext Transmission of Sensitive Information(CWE-319) [Vendor Evaluation]
  3. Use of Hard-coded Cryptographic Key(CWE-321) [Vendor Evaluation]
  4. Path Traversal : '.../...//'(CWE-35) [Vendor Evaluation]
  5. Incorrect Authorization(CWE-863) [Vendor Evaluation]
  6. Hidden Functionality(CWE-912) [Vendor Evaluation]
CVE (What is CVE?)

  1. CVE-2026-82824
  2. CVE-2026-82825
  3. CVE-2026-82826
  4. CVE-2026-82827
  5. CVE-2026-82828
  6. CVE-2026-82829
References

  1. Related document : Product Security Vulnerability Disclosure Policy : Hitachi Industrial Equipment Systems
Revision History

  • [2026/10/05]
      Web page was published