PT-2017-16565 · Tibco Software · Tibbr Community+1

Published

2017-12-13

·

Updated

2019-10-09

·

CVE-2017-5534

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions TIBCO Software Inc. tibbr Community versions 5.2.1 and below TIBCO Software Inc. tibbr Community version 6.0.0 TIBCO Software Inc. tibbr Community version 6.0.1 TIBCO Software Inc. tibbr Community version 7.0.0 TIBCO Software Inc. tibbr Enterprise versions 5.2.1 and below TIBCO Software Inc. tibbr Enterprise version 6.0.0 TIBCO Software Inc. tibbr Enterprise version 6.0.1 TIBCO Software Inc. tibbr Enterprise version 7.0.0
Description The tibbr user profiles components of tibbr Community and tibbr Enterprise expose a weakness in an improperly sandboxed third-party component.
Recommendations For TIBCO Software Inc. tibbr Community versions 5.2.1 and below, consider updating to a version above 5.2.1. For TIBCO Software Inc. tibbr Community version 6.0.0, consider updating to a version above 6.0.0. For TIBCO Software Inc. tibbr Community version 6.0.1, consider updating to a version above 6.0.1. For TIBCO Software Inc. tibbr Community version 7.0.0, consider updating to a version above 7.0.0. For TIBCO Software Inc. tibbr Enterprise versions 5.2.1 and below, consider updating to a version above 5.2.1. For TIBCO Software Inc. tibbr Enterprise version 6.0.0, consider updating to a version above 6.0.0. For TIBCO Software Inc. tibbr Enterprise version 6.0.1, consider updating to a version above 6.0.1. For TIBCO Software Inc. tibbr Enterprise version 7.0.0, consider updating to a version above 7.0.0. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2017-5534

Affected Products

Tibbr Community
Tibbr Enterprise