External Script Execution Vulnerability in Hitachi Vantara Pentaho Data Integration & Analytics
⚠️ CVE-Referenzen:
CVE-2025-11159
Hitachi - Pentaho Data Integration And Analytics - CRITICAL - CVE-2025-11159.
Hitachi Vantara's Pentaho Data Integration & Analytics is susceptible to an external script execution vulnerability within its JDBC driver for H2 databases. This issue emerges when a new connection is established by a data source administrator, possibly allowing unauthorized actions through scripts. Organizations using this software should take immediate action to evaluate their risk and enhance their security measures.
Quelle: securityvulnerability.io