Hitachi.Vantara.Pentaho.BAS.Remote.Code.Injection
Description
This indicates an attack attempt to exploit a Remote Code Injection vulnerability in Hitachi Vantara Pentaho Business Analytics Server.
The vulnerability is due to insufficient validation error when handling an crafted HTTP request. An unauthenticated remote attacker may be able to exploit this to execute remote code within the context of the target system.
Affected Products
Hitachi Vantara Pentaho Business Analytics Server prior to versions 9.4.0.1
Hitachi Vantara Pentaho Business Analytics Server prior to versions 9.3.0.2
Hitachi Vantara Pentaho Business Analytics Server version 8.3.x
Impact
System Compromise: Remote attackers can gain control of vulnerable systems.
Recommended Actions
Apply the latest patch or update from the vendor.
https://support.pentaho.com/hc/en-us/articles/14455561548301--Resolved-Pentaho-BA-Server-Failure-to-Sanitize-Special-Elements-into-a-Different-Plane-Special-Element-Injection-Versions-before-9-4-0-1-and-9-3-0-2-including-8-3-x-Impacted-CVE-2022-43769-
Telemetry
Coverage
IPS (Regular DB) | |
IPS (Extended DB) |