PT-2017-16562 · Tibco · Tibco Managed File Transfer Command Center+1
Published
2017-10-17
·
Updated
2019-10-09
·
CVE-2017-5531
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
TIBCO Managed File Transfer Command Center versions 8.0.0 through 8.0.1
TIBCO Managed File Transfer Internet Server versions 8.0.0 through 8.0.1
Description
The issue may allow any authenticated user to gain administrative control of Managed File Transfer web applications when the Administrator Service is enabled.
Recommendations
For TIBCO Managed File Transfer Command Center versions 8.0.0 through 8.0.1, consider disabling the Administrator Service until a patch is available.
For TIBCO Managed File Transfer Internet Server versions 8.0.0 through 8.0.1, consider disabling the Administrator Service until a patch is available.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Tibco Managed File Transfer Command Center
Tibco Managed File Transfer Internet Server