Hitachi Vantara Pentaho Business Analytics Server versions before 9.4.0.0 and 9.3.0.1, including 8.3.x with the Big Data Plugin expose the username and password of clusters in clear text into system logs.
References
Configurations
History
No history.
Information
Published : 2023-04-03 19:15
Updated : 2023-11-07 03:54
NVD link : CVE-2022-43772
Mitre link : CVE-2022-43772
CVE.ORG link : CVE-2022-43772
JSON object : View
Products Affected
hitachi
- vantara_pentaho_business_analytics_server
CWE
CWE-532
Insertion of Sensitive Information into Log File