Malicious File Upload Vulnerability in IBM Planning Analytics
CVE-2024-25034
8.8HIGH
What is CVE-2024-25034?
IBM Planning Analytics versions 2.0 and 2.1 are susceptible to a file upload vulnerability due to a lack of validation for file types during the File Manager T1 process. This security flaw enables attackers to upload malicious executable files, which can subsequently be sent to unsuspecting victims for executing further exploits, potentially compromising system integrity and user data.
Affected Version(s)
Planning Analytics Local 2.0, 2.1