CVE-2024-28981 Information

Description

Hitachi Vantara Pentaho Data Integration & Analytics versions before 10.1.0.0 and 9.3.0.8 including 8.3.x discloses database passwords when searching metadata injectable fields.

Reference

https://support.pentaho.com/hc/en-us/articles/27569056997261–Resolved-Hitachi-Vantara-Pentaho-Data-Integration-Analytics-Insufficiently-Protected-Credentials-Versions-before-10-1-0-0-including-9-3-x-and-8-3-x-impacted-CVE-2024-28981

Share on: