Hitachi Vantara Pentaho Business Analytics Server
cpe:2.3:a:hitachi:vantara_pentaho_business_analytics_server:*:*:*:*:*:*:*
- < 10.2.0.0
- < 9.3.0.8
- ~8.3
A vulnerability exists in Hitachi Vantara Pentaho Business Analytics Server in versions prior to 10.2.0.0 and 9.3.0.8, including 8.3.x. The issue arises because the product fails to properly enforce authorization checks in the data source management service. This lack of proper access control allows users to access restricted data or perform unauthorized actions, potentially leading to information exposure or denial-of-service conditions.
Exploitation of this vulnerability could result in unauthorized access to data or the ability to perform actions without proper authorization, potentially causing information exposure or denial-of-service issues.
Users can upgrade to Pentaho Business Analytics Server version 10.2.0.0 or 9.3.0.8 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.