Severity
7.5HIGH
EPSS
0.1%
top 75.19%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 19

Description

Planning Analytics Cartridge for Cloud Pak for Data 4.0 exposes sensitive information in logs which could lead an attacker to exploit this vulnerability to conduct further attacks. IBM X-Force ID: 247896.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:NExploitability: 3.9 | Impact: 1.4

Affected Packages2 packages

Patches

🔴Vulnerability Details

2
CVEList
IBM Planning Analytics Cartridge for Cloud Pak for Data information disclosure2023-07-19
GHSA
GHSA-37r4-959h-qq8j: Planning Analytics Cartridge for Cloud Pak for Data 42023-07-19
CVE-2023-26026 (HIGH CVSS 7.5) | Planning Analytics Cartridge for Cl | cvebase.io