IBM Planning Analytics Local 2.0 and 2.1 does not invalidate session after a logout which could allow an authenticated user to impersonate another user on the system.
2025-06-01T12:15:25.807
2025-06-09T18:07:39.407
Analyzed
CVSSv3.1: 6.3 (MEDIUM)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | ibm | planning_analytics_local | 2.0.0 | Yes |
| Application | ibm | planning_analytics_local | 2.1.0 | Yes |