CVE-2020-4882: SSRF
IBM Planning Analytics 2.0 could be vulnerable to a Server-Side Request Forgery (SSRF) attack by constucting URLs from user-controlled data . This could enable attackers to make arbitrary requests to the internal network or to the local file system. IBM X-Force ID: 190852.
Other sources
IBM Planning Analytics could be vulnerable to a Server-Side Request Forgery (SSRF) attack by constucting URLs from user-controlled data . This could enable attackers to make arbitrary requests to the internal network or to the local file system.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2020-4882.
What is the severity of CVE-2020-4882?
The severity of CVE-2020-4882 is medium with a CVSS score of 6.1.
What software is affected by CVE-2020-4882?
IBM Planning Analytics version 2.0 is affected by CVE-2020-4882.
What is the impact of CVE-2020-4882?
CVE-2020-4882 could enable attackers to make arbitrary requests to the internal network or to the local file system.
Is there a fix available for CVE-2020-4882?
Yes, IBM has released a fix for CVE-2020-4882. Please refer to the IBM support page for more information.