Hitachi Vantara Pentaho Business Analytics Server versions before 9.4.0.0 and 9.3.0.1, including 8.3.x with the Big Data Plugin expose the username and password of clusters in clear text into system logs.
References
Configurations
History
21 Nov 2024, 07:27
Type | Values Removed | Values Added |
---|---|---|
References | () https://support.pentaho.com/hc/en-us/articles/14454594588045--Resolved-Hitachi-Vantara-Pentaho-Business-Analytics-Server-Insertion-of-Sensitive-Information-into-Log-File-Versions-before-9-4-0-0-and-9-3-0-1-including-8-3-x-Impacted-CVE-2022-43772- - Vendor Advisory | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 3.8 |
07 Nov 2023, 03:54
Type | Values Removed | Values Added |
---|---|---|
Summary | Hitachi Vantara Pentaho Business Analytics Server versions before 9.4.0.0 and 9.3.0.1, including 8.3.x with the Big Data Plugin expose the username and password of clusters in clear text into system logs. |
10 Apr 2023, 18:13
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-532 | |
First Time |
Hitachi vantara Pentaho Business Analytics Server
Hitachi |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.5 |
CPE | cpe:2.3:a:hitachi:vantara_pentaho_business_analytics_server:*:*:*:*:*:*:*:* | |
References | (MISC) https://support.pentaho.com/hc/en-us/articles/14454594588045--Resolved-Hitachi-Vantara-Pentaho-Business-Analytics-Server-Insertion-of-Sensitive-Information-into-Log-File-Versions-before-9-4-0-0-and-9-3-0-1-including-8-3-x-Impacted-CVE-2022-43772- - Vendor Advisory |
03 Apr 2023, 19:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-04-03 19:15
Updated : 2024-11-21 07:27
NVD link : CVE-2022-43772
Mitre link : CVE-2022-43772
CVE.ORG link : CVE-2022-43772
JSON object : View
Products Affected
hitachi
- vantara_pentaho_business_analytics_server
CWE
CWE-532
Insertion of Sensitive Information into Log File