Vulnerabilities > IBM > Planning Analytics Workspace

DATE CVE VULNERABILITY TITLE RISK
2024-08-04 CVE-2024-35143 Missing Authentication for Critical Function vulnerability in IBM products
IBM Planning Analytics Local 2.0 and 2.1 connects to a MongoDB server.
network
low complexity
ibm CWE-306
critical
9.1
2022-09-08 CVE-2022-22314 Unspecified vulnerability in IBM Planning Analytics Workspace 2.0
IBM Planning Analytics Local 2.0 allows web pages to be stored locally which can be read by another user on the system.
local
low complexity
ibm
3.3
2022-04-25 CVE-2021-39040 Unrestricted Upload of File with Dangerous Type vulnerability in IBM Planning Analytics Workspace 2.0
IBM Planning Analytics Workspace 2.0 could be vulnerable to malicious file upload by not validating the file types or sizes.
network
low complexity
ibm CWE-434
8.0
2022-04-25 CVE-2022-22392 Unrestricted Upload of File with Dangerous Type vulnerability in IBM Planning Analytics Workspace 2.0
IBM Planning Analytics Local 2.0 could allow an attacker to upload arbitrary executable files which, when executed by an unsuspecting victim could result in code execution.
local
low complexity
ibm CWE-434
7.8