QID 376013
Date Published: 2021-11-04
QID 376013: Tableau Server Information Disclosure Vulnerability (ADV-2021-016)
Tableau Server is a Business Intelligence application that allows its users to organize, edit, share, and collaborate on Tableau dashboards.
A misconfiguration in the production branch for the affected products resulted in Tableau product usage data being sent to the staging endpoint instead of the production endpoint.
Affected Versions:
Tableau Server on Linux 2021.3
Tableau Server on Windows 2021.3
QID Detection Logic (Authenticated)
This QID checks for the file version of tabsvc.exe for Tableau Server
A subset of internal Tableau employees may have been exposed to the additional non-sensitive Tableau usage data.
Solution
Customers are advised to refer to ADV-2021-016 for information pertaining to remediating this vulnerability.
Vendor References
- ADV-2021-016 -
help.salesforce.com/s/articleView?id=000363184&type=1
CVEs related to QID 376013
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| ADV-2021-016 |
|