CVE-2022-22392: Malicious File Upload
IBM Planning Analytics Local 2.0 could allow an attacker to upload arbitrary executable files which, when executed by an unsuspecting victim could result in code execution. IBM X-Force ID: 222066.
Other sources
IBM Planning Analytics Local could allow an attacker to upload arbitrary executable files which, when executed by an unsuspecting victim could result in code execution.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-22392?
The severity of CVE-2022-22392 is high, with a severity value of 7.8.
What is the vulnerability ID for IBM Planning Analytics Local?
The vulnerability ID for IBM Planning Analytics Local is CVE-2022-22392.
What is affected by CVE-2022-22392?
IBM Planning Analytics Workspace version 2.0 is affected by CVE-2022-22392.
What is the impact of CVE-2022-22392?
CVE-2022-22392 allows an attacker to upload arbitrary executable files, which can result in code execution when executed by unsuspecting victims.
How can CVE-2022-22392 be fixed?
To fix CVE-2022-22392, update IBM Planning Analytics Workspace to a version that patches the vulnerability.