Hitachi Vantara Pentaho Business Analytics Server - Incorrect Permission Assignment for Critical Resource
Vulnerability Description
Hitachi Vantara Pentaho Business Analytics Server prior to versions 9.4.0.1 and 9.3.0.2, including 8.3.x is installed with a sample HSQLDB data source configured with stored procedures enabled.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-43773
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Harry Withington, Aura Information Security
More from Hitachi Vantara
View All →Affected Vendor
Hitachi Vantara
View all reports →