CNNVD-202512-2617 Information

CNNVD ID

CNNVD-202512-2617

CVE-2025-9122

  • CNNVD Published: 2025-12-15

Description (Chinese)

Hitachi Vantara Pentaho Data Integration and Analytics是美国Hitachi Vantara公司的一个商业智能仪表板设计器。 Hitachi Vantara Pentaho Data Integration and Analytics 10.2.0.4之前版本存在安全漏洞,该漏洞源于在遇到错误时显示完整服务器堆栈跟踪,可能导致信息泄露。

Description (English)

Hitachi Vantaara Pentaho Data Information and Analytics is a commercial smart dashboard designer for Hitachi Vantara, United States. There was a security loophole in the pre-Hitachi Vantara Pentaho Data Information and Analytics 10.2.1.4 that arose from the possibility of leaking information by showing complete server stack tracking in case of error.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Hitachi Vantara

Published

2025-12-15

Last Modified

2026-02-24

References

https://support.pentaho.com/hc/en-us/articles/41833799577741–Resolved-Hitachi-Vantara-Pentaho-Business-Analytics-Server-Generation-of-Error-Message-Containing-Sensitive-Information-Versions-before-10-2-0-4-Impacted-CVE-2025-9122 https://access.redhat.com/security/cve/cve-2025-9122

Patch

https://support.pentaho.com/hc/en-us/articles/41833799577741--Resolved-Hitachi-Vantara-Pentaho-Business-Analytics-Server-Generation-of-Error-Message-Containing-Sensitive-Information-Versions-before-10-2-0-4-Impacted-CVE-2025-9122

Share on: