Security Advisory

CVE-2022-43941

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-04-03 18:44:41
Last updated 2025-02-11 14:29:51
Assigner HITVAN
State PUBLISHED

Description

Hitachi Vantara Pentaho Business Analytics Server versions before 9.4.0.1 and 9.3.0.2, including 8.3.x do not correctly protect the Post Analysis service endpoint of the data access plugin against out-of-band XML External Entity Reference.