CVE-2022-4771
03.04.2023, 19:15
Hitachi Vantara Pentaho Business Analytics Server prior to versions 9.4.0.1 and 9.3.0.2, including 8.3.x allow a malicious URL to inject content into the Pentaho User Console through session variables.
Vendor | Product | Version |
---|---|---|
hitachi | vantara_pentaho_business_analytics_server | 𝑥 < 9.3.0.2 |
hitachi | vantara_pentaho_business_analytics_server | 9.4.0.0 |
𝑥
= Vulnerable software versions
References