First published: Sun Aug 04 2024(Updated: )
IBM Planning Analytics connects to a MongoDB server. MongoDB, a document-oriented database system, is listening on the remote port, and it is configured to allow connections without password authentication. A remote attacker can gain unauthorized access to the database.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Planning Analytics Local - IBM Planning Analytics Workspace | <=2.1 | |
IBM Planning Analytics Local - IBM Planning Analytics Workspace | <=2.0 | |
IBM Planning Analytics Workspace | >=2.0<2.0.97 | |
IBM Planning Analytics Workspace | >=2.1<2.1.4 | |
IBM Planning Analytics Local | >=2.0<2.0.97 | |
IBM Planning Analytics Local | >=2.1.0<2.1.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.