Vulnerabilities > IBM > Planning Analytics Local > 2.0.0

DATE CVE VULNERABILITY TITLE RISK
2023-05-12 CVE-2023-28520 Cross-site Scripting vulnerability in IBM Planning Analytics Local 2.0.0
IBM Planning Analytics Local 2.0 is vulnerable to stored cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2021-08-10 CVE-2021-29739 Unchecked Return Value vulnerability in IBM Planning Analytics Local 2.0.0
IBM Planning Analytics Local 2.0 could allow a remote attacker to obtain sensitive information when a stack trace is returned in the browser.
network
low complexity
ibm CWE-252
4.0
2021-05-17 CVE-2020-4669 Missing Authorization vulnerability in IBM Planning Analytics Cloud and Planning Analytics Local
IBM Planning Analytics Local 2.0 connects to a MongoDB server.
network
low complexity
ibm CWE-862
6.4
2021-05-17 CVE-2020-4670 Improper Authentication vulnerability in IBM Planning Analytics Cloud and Planning Analytics Local
IBM Planning Analytics Local 2.0 connects to a Redis server.
network
low complexity
ibm CWE-287
6.4
2021-05-14 CVE-2020-4985 Information Exposure vulnerability in IBM Planning Analytics Local 2.0.0
IBM Planning Analytics Local 2.0 could allow an attacker to obtain sensitive information due to accepting body parameters in a query.
network
low complexity
ibm CWE-200
5.0
2020-11-03 CVE-2020-4649 Information Exposure vulnerability in IBM Planning Analytics Local
IBM Planning Analytics Local 2.0.9.2 and IBM Planning Analytics Workspace 57 could expose data to non-privleged users by not invalidating TM1Web user sessions.
network
low complexity
ibm CWE-200
4.0
2020-07-29 CVE-2020-4645 Cross-site Scripting vulnerability in IBM Planning Analytics Local
IBM Planning Analytics Local 2.0.0 through 2.0.9.1 is vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2020-07-29 CVE-2020-4644 Improper Input Validation vulnerability in IBM Planning Analytics Local
IBM Planning Analytics Local 2.0.0 through 2.0.9.1 could allow a remote attacker to hijack the clicking action of the victim.
network
ibm CWE-20
5.8
2020-06-02 CVE-2020-4503 Cross-site Scripting vulnerability in IBM Planning Analytics Local
IBM Planning Analytics Local 2.0 is vulnerable to cross-site scripting.
network
ibm CWE-79
4.3
2020-06-02 CVE-2020-4431 Cross-site Scripting vulnerability in IBM Planning Analytics Local
IBM Planning Analytics Local 2.0 is vulnerable to cross-site scripting.
network
ibm CWE-79
3.5