High severity8.8NVD Advisory· Published Apr 3, 2023· Updated Jun 17, 2026
CVE-2022-43940
CVE-2022-43940
Description
Hitachi Vantara Pentaho Business Analytics Server versions before 9.4.0.1 and 9.3.0.2, including 8.3.x do not correctly perform an authorization check in the data source management service.
Affected products
5cpe:2.3:a:hitachi:vantara_pentaho_business_analytics_server:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:hitachi:vantara_pentaho_business_analytics_server:*:*:*:*:*:*:*:*range: <9.3.0.2
- cpe:2.3:a:hitachi:vantara_pentaho_business_analytics_server:9.4.0.0:*:*:*:*:*:*:*
<9.4.0.1, <9.3.0.2, 8.3.x+ 1 more
- (no CPE)range: <9.4.0.1, <9.3.0.2, 8.3.x
- (no CPE)range: 1.0
- Range: <9.4.0.1, <9.3.0.2, 8.3.x
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.