PT-2019-12185 · Tibco Software · Tibco Loglogic Lx4025R2 Appliance+15
Published
2019-08-13
·
Updated
2019-10-09
·
CVE-2019-11207
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
TIBCO LogLogic Enterprise Virtual Appliance versions 6.2.1 and prior versions
TIBCO LogLogic Log Management Intelligence version 6.2.1
TIBCO LogLogic LX825 Appliance version 0.0.004
TIBCO LogLogic LX1025 Appliance version 0.0.004
TIBCO LogLogic LX4025 Appliance version 0.0.004
TIBCO LogLogic MX3025 Appliance version 0.0.004
TIBCO LogLogic MX4025 Appliance version 0.0.004
TIBCO LogLogic ST1025 Appliance version 0.0.004
TIBCO LogLogic ST2025-SAN Appliance version 0.0.004
TIBCO LogLogic ST4025 Appliance version 0.0.004
TIBCO LogLogic LX1035 Appliance version 0.0.005
TIBCO LogLogic LX1025R1 Appliance version 0.0.004
TIBCO LogLogic LX1025R2 Appliance version 0.0.004
TIBCO LogLogic LX4025R1 Appliance version 0.0.004
TIBCO LogLogic LX4025R2 Appliance version 0.0.004
TIBCO LogLogic LX4035 Appliance version 0.0.005
TIBCO LogLogic ST2025-SANR1 Appliance version 0.0.004
TIBCO LogLogic ST2025-SANR2 Appliance version 0.0.004
TIBCO LogLogic ST2035-SAN Appliance version 0.0.005
TIBCO LogLogic ST4025R1 Appliance version 0.0.004
TIBCO LogLogic ST4025R2 Appliance version 0.0.004
TIBCO LogLogic ST4035 Appliance version 0.0.005
Description
The web server component of TIBCO Software Inc.'s TIBCO LogLogic Enterprise Virtual Appliance and TIBCO LogLogic Log Management Intelligence contains multiple vulnerabilities that theoretically allow persistent and reflected cross-site scripting (XSS) attacks, as well as cross-site request forgery (CSRF) attacks.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
CSRF
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Tibco Loglogic Enterprise Virtual Appliance
Tibco Loglogic Lx1025 Appliance
Tibco Loglogic Lx1025R1 Appliance
Tibco Loglogic Lx1025R2 Appliance
Tibco Loglogic Lx1035 Appliance
Tibco Loglogic Lx4025 Appliance
Tibco Loglogic Lx4025R1 Appliance
Tibco Loglogic Lx4025R2 Appliance
Tibco Loglogic Lx4035 Appliance
Tibco Loglogic Lx825 Appliance
Tibco Loglogic Log Management Intelligence
Tibco Loglogic Mx3025 Appliance
Tibco Loglogic St2025-San Appliance
Tibco Loglogic St2025-Sanr1 Appliance
Tibco Loglogic St2025-Sanr2 Appliance
Tibco Loglogic St2035-San Appliance