CVE-2025-33005
6.3MEDIUMIBM Planning Analytics Local 2.0 and 2.1 does not invalidate session after a logout which could allow an authenticated user to impersonate another user on the system.
Publicado: 6/1/2025Actualizado: 6/9/2025
Descripción
IBM Planning Analytics Local 2.0 and 2.1 does not invalidate session after a logout which could allow an authenticated user to impersonate another user on the system.
Análisis IAImpulsado por IA
Productos Afectados
ibmplanning_analytics_local
2.0.0
ibmplanning_analytics_local
2.1.0
Referencias
- https://www.ibm.com/support/pages/node/7235182Vendor Advisory