2.1
CVSSv2

CVE-2009-5100

Published: 13/09/2011 Updated: 10/10/2018
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Pentaho BI Server 1.7.0.1062 and previous versions does not set the autocomplete tag to off on web pages using a password field, which might allow physically proximate malicious users to obtain the password.

Vulnerable Product Search on Vulmon Subscribe to Product

pentaho bi server 1.2.0

pentaho bi server 1.6.0

pentaho bi server