Medium severity4.3NVD Advisory· Published May 24, 2023· Updated Jun 17, 2026
CVE-2023-1158
CVE-2023-1158
Description
Hitachi Vantara Pentaho Business Analytics Server versions before 9.4.0.1 and 9.3.0.3, including 8.3.x expose dashboard prompts to users who are not part of the authorization list.
Affected products
6- Range: <9.4.0.1 and <9.3.0.3, including 8.3.x
<9.4.0.1 and <9.3.0.3, including 8.3.x+ 1 more
- (no CPE)range: <9.4.0.1 and <9.3.0.3, including 8.3.x
- (no CPE)range: 1.0
cpe:2.3:a:hitachi:vantara_pentaho_business_analytics_server:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:hitachi:vantara_pentaho_business_analytics_server:*:*:*:*:*:*:*:*range: >=9.3.0.0,<=9.3.0.3
- cpe:2.3:a:hitachi:vantara_pentaho_business_analytics_server:9.4.0.0:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.