Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2025-65115

33
FAUCET Score

BRIEFING NOTE: CVE-2025-65115 OVERVIEW CVE-2025-65115 is a remote code execution vulnerability affecting multiple Hitachi and related IT management products, including JP1/IT Desktop Management versions, Job Management Partner 1 suite components, and JP1/NETM/DM software on Windows platforms. The vulnerability impacts numerous version branches across products, with affected versions ranging from version 09-00 through 13-50, with patched versions available for most product lines. SEVERITY This vulnerability carries a CVSS score of 8.8 (HIGH) with a network-based attack vector requiring only low complexity and valid user credentials to exploit. The attack requires no user interaction and affects the confidentiality, integrity, and availability of the target system. The metric vector indicates an authenticated attacker can achieve full compromise of affected systems remotely. EXPLOITATION STATUS Currently, CVE-2025-65115 is not listed on the CISA Known Exploited Vulnerabilities catalog and is inactive on the Hot List, suggesting no active exploitation in the wild at this time. The EPSS score of 0.00081 ranks this vulnerability below the typical exploitation threshold, and no public exploit code has been reported. However, the moderate FAUCET Risk Score of 52.0 and the broad product portfolio affected warrant prioritized patching and monitoring given the high severity rating.

Impacted Technologies

VendorProductVersion(s)CPE
>= 09-50, <= 09-50-03CPE matchmatch criteria
cpe:2.3:a:hitachi:job_management_partner_1\/it_desktop_management-manager:*:*:*:*:*:*:*:*
>= 09-51, <= 09-51-05CPE matchmatch criteria
cpe:2.3:a:hitachi:job_management_partner_1\/it_desktop_management-manager:*:*:*:*:*:*:*:*
>= 10-00, <= 10-00-02CPE matchmatch criteria
cpe:2.3:a:hitachi:job_management_partner_1\/it_desktop_management-manager:*:*:*:*:*:*:*:*
>= 10-01, <= 10-01-05CPE matchmatch criteria
cpe:2.3:a:hitachi:job_management_partner_1\/it_desktop_management-manager:*:*:*:*:*:*:*:*
>= 10-02, <= 10-02-05CPE matchmatch criteria
cpe:2.3:a:hitachi:job_management_partner_1\/it_desktop_management-manager:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

8.8HIGH

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
2.8
Impact Score
5.9
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.61%
Probability of exploitation in next 30 days
EPSS Percentile
45.7%
Percentile rank of EPSS score among Peer Group
As of 2026-07-26
Model: v2026.06.15
This CVE's current EPSS score of 0.0061 is in the 26th percentile among its peer group of 36,835 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Remediation records are not available for this CVE.

References

hitachi.com / products/it/software/security/info/vuls/hitachi-sec-2026-118/index.html
Vendor Advisory