← KEV catalog
CISA known exploited vulnerability

CVE-2019-4716

IBM Planning Analytics Remote Code Execution Vulnerability

SOURCE FACT

IBM · Planning Analytics

IBM Planning Analytics is vulnerable to a configuration overwrite that allows an unauthenticated user to login as "admin", and then execute code as root or SYSTEM via TM1 scripting.

Required action

Apply updates per vendor instructions.

CISA notes

https://nvd.nist.gov/vuln/detail/CVE-2019-4716

View source evidence →

CHECK YOUR OUTSIDE-IN INVENTORY

Could this product be present?