CVE-2022-43941

Publication date

2023-04-03 18:44:41

Family

HITVAN

State

PUBLISHED

Description

Hitachi Vantara Pentaho Business Analytics Server versions before 9.4.0.1 and 9.3.0.2, including 8.3.x do not correctly protect the Post Analysis service endpoint of the data access plugin against out-of-band XML External Entity Reference.