Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-68783
HistoryJul 21, 2023 - 12:00 a.m.

IBM Planning Analytics Encryption Problem Vulnerability (CNVD-2023-68783)

2023-07-2100:00:00
China National Vulnerability Database
www.cnvd.org.cn
9
ibm
planning analytics
encryption
vulnerability
cloud pak
data
password policy
couchdb
sensitive information
database
attack

EPSS

0.001

Percentile

45.1%

IBM Planning Analytics is a suite of business planning analytics solutions from International Business Machines (IBM). The solution supports automated execution of processes such as business planning, budgeting and analysis. Planning Analytics Cartridge for Cloud Pak for Data version v4.0 suffers from an encryption issue vulnerability that stems from an insecure password policy on the CouchDB server, which can be exploited by an attacker to collect sensitive information from the database.

EPSS

0.001

Percentile

45.1%

Related for CNVD-2023-68783