CVE-2023-5617
MEDIUMDescription
Hitachi Vantara Pentaho Data Integration & Analytics versions before 10.1.0.0 and 9.3.0.6, including 9.5.x and 8.3.x, display the version of Tomcat when a server error is encountered.
Is your site exposed to CVE-2023-5617?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| hitachi | vantara_pentaho_data_integration_and_analytics |
| hitachi | vantara_pentaho_data_integration_and_analytics |
References
Advisories & Patches
Frequently Asked Questions
What is CVE-2023-5617? +
How severe is CVE-2023-5617? +
What products are affected by CVE-2023-5617? +
How do I check if I'm vulnerable to CVE-2023-5617? +
Related Vulnerabilities
Squid is a caching proxy for the Web. In Squid versions prior to 7.2, a failure to redact HTTP authentication …
Hitachi Vantara Pentaho Business Analytics Server prior to versions 10.1.0.0 and 9.3.0.7, including 8.3.x allow a malicious URL to inject …
Hitachi Vantara Pentaho Business Analytics Server prior to versions 10.1.0.0 and 9.3.0.7, including 8.3.x allow a malicious URL to inject …
Expression Language Injection vulnerability in Hitachi Tuning Manager on Windows, Linux, Solaris allows Code Injection.This issue affects Hitachi Tuning Manager: …
Remote Code Execution Vulnerability in Hitachi Storage Navigator and the maintenance console in Hitachi Virtual Storage Platform G130, G150, G350, …
OS command injection vulneravility in the management gui (maintenance utility) of Hitachi Virtual Storage Platform One Block 23, 24, 26 …