CVE-2025-33005
6.3MEDIUMIBM Planning Analytics Local 2.0 and 2.1 does not invalidate session after a logout which could allow an authenticated user to impersonate another user on the system.
Published: 6/1/2025Updated: 6/9/2025
Description
IBM Planning Analytics Local 2.0 and 2.1 does not invalidate session after a logout which could allow an authenticated user to impersonate another user on the system.
AI AnalysisPowered by AI
Affected Products
ibmplanning_analytics_local
2.0.0
ibmplanning_analytics_local
2.1.0
References
- https://www.ibm.com/support/pages/node/7235182Vendor Advisory