First published: Wed Jun 26 2024(Updated: )
Hitachi Vantara Pentaho Business Analytics Server versions before 10.1.0.0 and 9.3.0.7, including 8.3.x do not correctly protect the ACL service endpoint of the Pentaho User Console against XML External Entity Reference.
Credit: security.vulnerabilities@hitachivantara.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hitachi Pentaho Business Analytics Server | >=8.3.0<9.3.0.7 | |
Hitachi Pentaho Business Analytics Server | >=9.3.1.0<10.1.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.