CVE-2021-45446
Summary
| CVE | CVE-2021-45446 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-11-02 15:15:00 UTC |
| Updated | 2023-11-07 03:39:00 UTC |
| Description | A vulnerability in Hitachi Vantara Pentaho Business Analytics Server versions before 9.2.0.2 and 8.3.0.25 does not cascade the hidden property to the children of the Home folder. This directory listing provides an attacker with the complete index of all the resources located inside the directory. |
Risk And Classification
Problem Types: CWE-281
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Hitachi | Vantara Pentaho | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Security check | MISC | support.pentaho.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.