| CVE-2024-28981 | Hitachi Vantara Pentaho Data Integration & Analytics - Insufficiently Protected Credentials | Hitachi Vantara | Pentaho Data Integration & Analytics | High | 8.5 | 2024-09-11 23:27:42 | Deep Dive |
| CVE-2024-28984 | Hitachi Vantara Pentaho Business Analytics Server - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') | Hitachi Vantara | Pentaho Business Analytics Server | High | 8.8 | 2024-06-26 22:41:57 | Deep Dive |
| CVE-2024-28983 | Hitachi Vantara Pentaho Business Analytics Server - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') | Hitachi Vantara | Pentaho Business Analytics Server | High | 8.8 | 2024-06-26 22:40:16 | Deep Dive |
| CVE-2024-28982 | Hitachi Vantara Pentaho Business Analytics Server - Improper Restriction of XML External Entity Reference | Hitachi Vantara | Pentaho Business Analytics Server | High | 7.1 | 2024-06-26 22:37:01 | Deep Dive |
| CVE-2023-5617 | Hitachi Vantara Pentaho Data Integration & Analytics - Server-generated Error Message Containing Sensitive Information | Hitachi Vantara | Pentaho Data Integration & Analytics | Medium | 5.3 | 2024-02-28 22:30:40 | Deep Dive |
| CVE-2023-3517 | Hitachi Vantara Pentaho Data Integration & Analytics - Improper Control of Resource Identifiers ('Resource Injection') | Hitachi Vantara | Pentaho Data Integration & Analytics | High | 8.5 | 2023-12-12 22:28:09 | Deep Dive |
| CVE-2023-6538 | System Management Unit (SMU) versions prior to 14.8.7825.01, used to manage Hitachi Vantara NAS products is susceptible to unintended information disclosure via unprivileged access to SMU configuration backup data. | Hitachi Vantara | System Management Unit (SMU) | High | 7.6 | 2023-12-11 17:54:12 | Deep Dive |
| CVE-2023-5808 | System Management Unit (SMU) versions prior to 14.8.7825.01, used to manage Hitachi Vantara NAS products are susceptible to unintended information disclosure via unprivileged access to HNAS configuration backup and diagnostic data. | Hitachi Vantara | System Management Unit (SMU) | High | 7.6 | 2023-12-04 23:53:34 | Deep Dive |
| CVE-2023-2358 | Hitachi Vantara Pentaho Business Analytics Server – Password Stored in a Recoverable Format | Hitachi Vantara | Pentaho Business Analytics Server | Medium | 4.3 | 2023-09-26 21:34:07 | Deep Dive |
| CVE-2022-4815 | Hitachi Vantara Pentaho Business Analytics Server - Deserialization of Untrusted Data | Hitachi Vantara | Pentaho Business Analytics Server | High | 8.0 | 2023-05-24 21:30:37 | Deep Dive |
| CVE-2023-1158 | Hitachi Vantara Pentaho Business Analytics Server - Incorrect Authorization | Hitachi Vantara | Pentaho Business Analytics Server | Medium | 4.3 | 2023-05-24 21:26:53 | Deep Dive |
| CVE-2022-43770 | Hitachi Vantara Pentaho Business Analytics Server - Incorrect Authorization | Hitachi Vantara | Pentaho Business Analytics Server | Medium | 5.4 | 2023-04-11 15:48:17 | Deep Dive |
| CVE-2022-3695 | Hitachi Vantara Pentaho Business Analytics Server - Improper Neutralization of Input During Web Page Generation | Hitachi Vantara | Pentaho Business Analytics Server | Medium | 6.5 | 2023-04-11 15:45:03 | Deep Dive |
| CVE-2022-4771 | Hitachi Vantara Pentaho Business Analytics Server - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') | Hitachi Vantara | Pentaho Business Analytics Server | Medium | 5.4 | 2023-04-03 18:58:44 | Deep Dive |
| CVE-2022-4770 | Hitachi Vantara Pentaho Business Analytics Server - Generation of Error Message Containing Sensitive Information | Hitachi Vantara | Pentaho Business Analytics Server | Medium | 4.3 | 2023-04-03 18:56:18 | Deep Dive |
| CVE-2022-4769 | Hitachi Vantara Pentaho Business Analytics Server - Generation of Error Message Containing Sensitive Information | Hitachi Vantara | Pentaho Business Analytics Server | Medium | 4.3 | 2023-04-03 18:53:52 | Deep Dive |
| CVE-2022-43772 | Hitachi Vantara Pentaho Business Analytics Server - Insertion of Sensitive Information into Log File | Hitachi Vantara | Pentaho Business Analytics Server | Low | 3.8 | 2023-04-03 18:50:59 | Deep Dive |
| CVE-2022-3960 | Hitachi Vantara Pentaho Business Analytics Server - Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection') | Hitachi Vantara | Pentaho Business Analytics Server | Medium | 6.3 | 2023-04-03 18:48:01 | Deep Dive |
| CVE-2022-43941 | Hitachi Vantara Pentaho Business Analytics Server - Improper Restriction of XML External Entity Reference | Hitachi Vantara | Pentaho Business Analytics Server | High | 7.1 | 2023-04-03 18:44:41 | Deep Dive |
| CVE-2022-43771 | Hitachi Vantara Pentaho Business Analytics Server - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') | Hitachi Vantara | Pentaho Business Analytics Server | Medium | 6.5 | 2023-04-03 18:40:01 | Deep Dive |