PT-2015-6626 · Tibco · Tibco Spotfire Web Player+9

Published

2015-07-21

·

Updated

2017-09-21

·

CVE-2015-4554

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions TIBCO Spotfire Client versions prior to 5.5.2 TIBCO Spotfire Client versions 6.0.x prior to 6.0.3 TIBCO Spotfire Client versions 6.5.x prior to 6.5.3 TIBCO Spotfire Client versions 7.0.x prior to 7.0.1 TIBCO Spotfire Web Player Client versions prior to 5.5.2 TIBCO Spotfire Web Player Client versions 6.0.x prior to 6.0.3 TIBCO Spotfire Web Player Client versions 6.5.x prior to 6.5.3 TIBCO Spotfire Web Player Client versions 7.0.x prior to 7.0.1 TIBCO Spotfire Analytics Platform for AWS versions 6.5 and 7.0.x prior to 7.0.1 TIBCO Spotfire Automation Services versions prior to 5.5.2 TIBCO Spotfire Automation Services versions 6.0.x prior to 6.0.3 TIBCO Spotfire Automation Services versions 6.5.x prior to 6.5.3 TIBCO Spotfire Automation Services versions 7.0.x prior to 7.0.1 TIBCO Spotfire Deployment Kit versions prior to 5.5.2 TIBCO Spotfire Deployment Kit versions 6.0.x prior to 6.0.3 TIBCO Spotfire Deployment Kit versions 6.5.x prior to 6.5.3 TIBCO Spotfire Deployment Kit versions 7.0.x prior to 7.0.1 TIBCO Spotfire Desktop versions prior to 6.5.2 TIBCO Spotfire Desktop versions 7.0.x prior to 7.0.1 TIBCO Spotfire Desktop Language Packs versions 7.0.x prior to 7.0.1 TIBCO Spotfire Professional versions prior to 5.5.2 TIBCO Spotfire Professional versions 6.0.x prior to 6.0.3 TIBCO Spotfire Professional versions 6.5.x prior to 6.5.3 TIBCO Spotfire Professional versions 7.0.x prior to 7.0.1 TIBCO Spotfire Web Player versions prior to 5.5.2 TIBCO Spotfire Web Player versions 6.0.x prior to 6.0.3 TIBCO Spotfire Web Player versions 6.5.x prior to 6.5.3 TIBCO Spotfire Web Player versions 7.0.x prior to 7.0.1 Silver Fabric Enabler for Spotfire Web Player version prior to 2.1.1
Description The issue allows remote attackers to execute arbitrary code or obtain sensitive information via unknown vectors.
Recommendations For TIBCO Spotfire Client versions prior to 5.5.2, update to version 5.5.2 or later. For TIBCO Spotfire Client versions 6.0.x prior to 6.0.3, update to version 6.0.3 or later. For TIBCO Spotfire Client versions 6.5.x prior to 6.5.3, update to version 6.5.3 or later. For TIBCO Spotfire Client versions 7.0.x prior to 7.0.1, update to version 7.0.1 or later. For TIBCO Spotfire Web Player Client versions prior to 5.5.2, update to version 5.5.2 or later. For TIBCO Spotfire Web Player Client versions 6.0.x prior to 6.0.3, update to version 6.0.3 or later. For TIBCO Spotfire Web Player Client versions 6.5.x prior to 6.5.3, update to version 6.5.3 or later. For TIBCO Spotfire Web Player Client versions 7.0.x prior to 7.0.1, update to version 7.0.1 or later. For TIBCO Spotfire Analytics Platform for AWS versions 6.5 and 7.0.x prior to 7.0.1, update to version 7.0.1 or later. For TIBCO Spotfire Automation Services versions prior to 5.5.2, update to version 5.5.2 or later. For TIBCO Spotfire Automation Services versions 6.0.x prior to 6.0.3, update to version 6.0.3 or later. For TIBCO Spotfire Automation Services versions 6.5.x prior to 6.5.3, update to version 6.5.3 or later. For TIBCO Spotfire Automation Services versions 7.0.x prior to 7.0.1, update to version 7.0.1 or later. For TIBCO Spotfire Deployment Kit versions prior to 5.5.2, update to version 5.5.2 or later. For TIBCO Spotfire Deployment Kit versions 6.0.x prior to 6.0.3, update to version 6.0.3 or later. For TIBCO Spotfire Deployment Kit versions 6.5.x prior to 6.5.3, update to version 6.5.3 or later. For TIBCO Spotfire Deployment Kit versions 7.0.x prior to 7.0.1, update to version 7.0.1 or later. For TIBCO Spotfire Desktop versions prior to 6.5.2, update to version 6.5.2 or later. For TIBCO Spotfire Desktop versions 7.0.x prior to 7.0.1, update to version 7.0.1 or later. For TIBCO Spotfire Desktop Language Packs versions 7.0.x prior to 7.0.1, update to version 7.0.1 or later. For TIBCO Spotfire Professional versions prior to 5.5.2, update to version 5.5.2 or later. For TIBCO Spotfire Professional versions 6.0.x prior to 6.0.3, update to version 6.0.3 or later. For TIBCO Spotfire Professional versions 6.5.x prior to 6.5.3, update to version 6.5.3 or later. For TIBCO Spotfire Professional versions 7.0.x prior to 7.0.1, update to version 7.0.1 or later. For TIBCO Spotfire Web Player versions prior to 5.5.2, update to version 5.5.2 or later. For TIBCO Spotfire Web Player versions 6.0.x prior to 6.0.3, update to version 6.0.3 or later. For TIBCO Spotfire Web Player versions 6.5.x prior to 6.5.3, update to version 6.5.3 or later. For TIBCO Spotfire Web Player versions 7.0.x prior to 7.0.1, update to version 7.0.1 or later. For Silver Fabric Enabler for Spotfire Web Player version prior to 2.1.1, update to version 2.1.1 or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2015-4554

Affected Products

Silver Fabric Enabler For Spotfire Web Player
Tibco Spotfire Analytics Platform For Aws
Tibco Spotfire Automation Services
Tibco Spotfire Client
Tibco Spotfire Deployment Kit
Tibco Spotfire Desktop
Tibco Spotfire Desktop Language Packs
Tibco Spotfire Professional
Tibco Spotfire Web Player
Tibco Spotfire Web Player Client