A vulnerability in
Hitachi Vantara Pentaho Business Analytics Server versions before 9.2.0.2 and
8.3.0.25 does not cascade the hidden property to the children of the Home folder. This directory listing provides an attacker with the complete index of all the resources located
inside the directory.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://support.pentaho.com/hc/en-us/articles/6744813983501 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: HITVAN
Published: 2022-11-02T14:26:02.105Z
Updated: 2024-08-04T04:39:20.999Z
Reserved: 2021-12-21T05:57:40.703Z
Link: CVE-2021-45446
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-11-02T15:15:09.683
Modified: 2024-11-21T06:32:13.470
Link: CVE-2021-45446
Redhat
No data.