Loading
IBM Planning Analytics 2.0 and 2.1 could be vulnerable to malicious file upload by not validating the type of file in the File Manager T1 process. Attackers can make use of this weakness and upload malicious executable files into the system that can be sent to victims for performing further attacks.
Use CWE-434, Ibm vendor hub and Planning Analytics product page to widen CVE-2024-25034 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2024-40693, CVE-2023-42017 and CVE-2022-22308 for nearby disclosures in the same product family.