Known Vulnerabilities for Planning Analytics by Ibm
Listed below are 10 of the newest known vulnerabilities associated with "Planning Analytics" by "Ibm".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-22339 json | IBM Planning Analytics 2.0 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to s... | 7.3 - HIGH | 2022-04-08 | 2022-04-15 |
| CVE-2022-22308 json | IBM Planning Analytics 2.0 is vulnerable to a Remote File Include (RFI) attack. User input could be passed into file include ... | 7.8 - HIGH | 2022-02-21 | 2023-08-08 |
| CVE-2021-39047 json | IBM Planning Analytics 2.0 and IBM Cognos Analytics 11.2.1, 11.2.0, and 11.1.7 are vulnerable to cross-site scripting. This v... | 6.1 - MEDIUM | 2022-06-24 | 2022-10-28 |
| CVE-2021-38892 json | ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further inv... | Not Provided | 2022-01-12 | 2023-11-07 |
| CVE-2021-38873 json | IBM Planning Analytics 2.0 is potentially vulnerable to CSV Injection. A remote attacker could execute arbitrary commands on ... | 7.8 - HIGH | 2021-11-24 | 2021-11-24 |
| CVE-2021-29853 json | IBM Planning Analytics 2.0 could expose information that could be used to to create attacks by not validating the return valu... | 4.3 - MEDIUM | 2021-09-01 | 2021-09-09 |
| CVE-2021-29852 json | IBM Planning Analytics 2.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScri... | 5.4 - MEDIUM | 2021-09-01 | 2021-09-09 |
| CVE-2021-29851 json | IBM Planning Analytics 2.0 could allow a remote attacker to obtain sensitive information when a stack trace is returned in th... | 4.3 - MEDIUM | 2021-09-01 | 2021-09-09 |
| CVE-2021-20580 json | IBM Planning Analytics 2.0 could be vulnerable to cross-site request forgery (CSRF) which could allow an attacker to execute ... | 4.3 - MEDIUM | 2021-06-29 | 2021-06-30 |
| CVE-2021-20526 json | IBM Planning Analytics 2.0 could allow a remote attacker to obtain sensitive information, caused by the failure to set the HT... | 5.3 - MEDIUM | 2021-10-27 | 2021-10-29 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Ibm | Planning Analytics | 2.0.8 | |||
| Application | Ibm | Planning Analytics | 2.0.7 | |||
| Application | Ibm | Planning Analytics | 2.0.6 | |||
| Application | Ibm | Planning Analytics | 2.0.5 | |||
| Application | Ibm | Planning Analytics | 2.0.4 | |||
| Application | Ibm | Planning Analytics | 2.0.3 | |||
| Application | Ibm | Planning Analytics | 2.0.2 | |||
| Application | Ibm | Planning Analytics | 2.0.1 | |||
| Application | Ibm | Planning Analytics | 2.0 |