A vulnerability in
Hitachi Vantara Pentaho Business Analytics Server versions before 9.2.0.2 and
8.3.0.25 does not cascade the hidden property to the children of the Home folder. This directory listing provides an attacker with the complete index of all the resources located
inside the directory.
References
Link | Resource |
---|---|
https://support.pentaho.com/hc/en-us/articles/6744813983501 | Vendor Advisory |
https://support.pentaho.com/hc/en-us/articles/6744813983501 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2022-11-02 15:15
Updated : 2024-11-21 06:32
NVD link : CVE-2021-45446
Mitre link : CVE-2021-45446
CVE.ORG link : CVE-2021-45446
JSON object : View
Products Affected
hitachi
- vantara_pentaho