Hitachi Vantara Pentaho Business Analytics Server versions before 9.4.0.1 and 9.3.0.3, including 8.3.x expose dashboard prompts to users who are not part of the authorization list.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2023-05-24 22:15
Updated : 2023-06-01 16:05
NVD link : CVE-2023-1158
Mitre link : CVE-2023-1158
CVE.ORG link : CVE-2023-1158
JSON object : View
Products Affected
hitachi
- vantara_pentaho
- vantara_pentaho_business_analytics_server
CWE
CWE-863
Incorrect Authorization