CVE-2025-65116 PUBLISHED

Buffer Overflow Vulnerability in JP1/IT Desktop Management 2 and JP1/NETM/DM

Assigner: Hitachi
Reserved: 18.11.2025 Published: 07.04.2026 Updated: 07.04.2026

Buffer Overflow Vulnerability in JP1/IT Desktop Management 2 - Manager on Windows, JP1/IT Desktop Management 2 - Operations Director on Windows, Job Management Partner 1/IT Desktop Management 2 - Manager on Windows, JP1/IT Desktop Management - Manager on Windows, Job Management Partner 1/IT Desktop Management - Manager on Windows, JP1/NETM/DM Manager on Windows, JP1/NETM/DM Client on Windows, Job Management Partner 1/Software Distribution Manager on Windows, Job Management Partner 1/Software Distribution Client on Windows.This issue affects JP1/IT Desktop Management 2 - Manager: from 13-50 before 13-50-02, from 13-11 before 13-11-04, from 13-10 before 13-10-07, from 13-01 before 13-01-07, from 13-00 before 13-00-05, from 12-60 before 12-60-12, from 10-50 through 12-50-11; JP1/IT Desktop Management 2 - Operations Director: from 13-50 before 13-50-02, from 13-11 before 13-11-04, from 13-10 before 13-10-07, from 13-01 before 13-01-07, from 13-00 before 13-00-05, from 12-60 before 12-60-12, from 10-50 through 12-50-11; Job Management Partner 1/IT Desktop Management 2 - Manager: from 10-50 through 10-50-11; JP1/IT Desktop Management - Manager: from 09-50 through 10-10-16; Job Management Partner 1/IT Desktop Management - Manager: from 09-50 through 10-10-16; JP1/NETM/DM Manager: from 09-00 through 10-20-02; JP1/NETM/DM Client: from 09-00 through 10-20-02; Job Management Partner 1/Software Distribution Manager: from 09-00 through 09-51-13; Job Management Partner 1/Software Distribution Client: from 09-00 through 09-51-13.

Metrics

CVSS Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CVSS Score: 5.5

Product Status

Vendor Hitachi
Product JP1/IT Desktop Management 2 - Manager
Versions Default: unaffected
  • affected from 13-50 to 13-50-02 (excl.)
  • affected from 13-11 to 13-11-04 (excl.)
  • affected from 13-10 to 13-10-07 (excl.)
  • affected from 13-01 to 13-01-07 (excl.)
  • affected from 13-00 to 13-00-05 (excl.)
  • affected from 12-60 to 12-60-12 (excl.)
  • affected from 10-50 to 12-50-11 (incl.)
Vendor Hitachi
Product JP1/IT Desktop Management 2 - Operations Director
Versions Default: unaffected
  • affected from 13-50 to 13-50-02 (excl.)
  • affected from 13-11 to 13-11-04 (excl.)
  • affected from 13-10 to 13-10-07 (excl.)
  • affected from 13-01 to 13-01-07 (excl.)
  • affected from 13-00 to 13-00-05 (excl.)
  • affected from 12-60 to 12-60-12 (excl.)
  • affected from 10-50 to 12-50-11 (incl.)
Vendor Hitachi
Product Job Management Partner 1/IT Desktop Management 2 - Manager
Versions Default: unaffected
  • affected from 10-50 to 10-50-11 (incl.)
Vendor Hitachi
Product JP1/IT Desktop Management - Manager
Versions Default: unaffected
  • affected from 09-50 to 10-10-16 (incl.)
Vendor Hitachi
Product Job Management Partner 1/IT Desktop Management - Manager
Versions Default: unaffected
  • affected from 09-50 to 10-10-16 (incl.)
Vendor Hitachi
Product JP1/NETM/DM Manager
Versions Default: unaffected
  • affected from 09-00 to 10-20-02 (incl.)
Vendor Hitachi
Product JP1/NETM/DM Client
Versions Default: unaffected
  • affected from 09-00 to 10-20-02 (incl.)
Vendor Hitachi
Product Job Management Partner 1/Software Distribution Manager
Versions Default: unaffected
  • affected from 09-00 to 09-51-13 (incl.)
Vendor Hitachi
Product Job Management Partner 1/Software Distribution Client
Versions Default: unaffected
  • affected from 09-00 to 09-51-13 (incl.)

Credits

  • Ruslan Sayfiev finder
  • Denis Faiustov finder

References

Problem Types

  • CWE-763 Release of invalid pointer or reference CWE

Impacts

  • CAPEC-100 Overflow Buffers