ibm planning-analytics CVE-2020-4527 is a vulnerability in IBM Planning Analytics
Published on July 20, 2020

IBM Planning Analytics 2.0 could allow a remote attacker to obtain sensitive information, caused by the failure to set the Secure flag for the session cookie in TLS mode. By intercepting its transmission within an HTTP session, an attacker could exploit this vulnerability to capture the cookie and obtain sensitive information. IBM X-Force ID: 182631.

NVD


Products Associated with CVE-2020-4527

Want to know whenever a new CVE is published for IBM Planning Analytics? stack.watch will email you.

 

Affected Versions

IBM Planning Analytics Version 2.0 is affected by CVE-2020-4527

Exploit Probability

EPSS
0.29%
Percentile
52.12%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.