PT-2022-20182 · Tibco Software · Tibco Ftl

Published

2022-08-09

·

Updated

2022-08-12

·

CVE-2022-30574

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions TIBCO FTL - Community Edition versions 6.0.0 through 6.8.0 TIBCO FTL - Developer Edition versions 6.0.1 through 6.8.0 TIBCO FTL - Enterprise Edition versions 6.0.0 through 6.7.3 TIBCO FTL - Enterprise Edition version 6.8.0 TIBCO eFTL - Community Edition versions 6.0.0 through 6.8.0 TIBCO eFTL - Developer Edition versions 6.0.1 through 6.8.0 TIBCO eFTL - Enterprise Edition versions 6.0.0 through 6.7.3 TIBCO eFTL - Enterprise Edition version 6.8.0
Description The ftlserver component of TIBCO Software Inc.'s TIBCO FTL and TIBCO eFTL contains a difficult to exploit vulnerability that allows a low privileged attacker with local access to obtain user credentials to the affected system.
Recommendations For TIBCO FTL - Community Edition versions 6.0.0 through 6.8.0, update to a version that contains a fix for this vulnerability. For TIBCO FTL - Developer Edition versions 6.0.1 through 6.8.0, update to a version that contains a fix for this vulnerability. For TIBCO FTL - Enterprise Edition versions 6.0.0 through 6.7.3, update to a version that contains a fix for this vulnerability. For TIBCO FTL - Enterprise Edition version 6.8.0, update to a version that contains a fix for this vulnerability. For TIBCO eFTL - Community Edition versions 6.0.0 through 6.8.0, update to a version that contains a fix for this vulnerability. For TIBCO eFTL - Developer Edition versions 6.0.1 through 6.8.0, update to a version that contains a fix for this vulnerability. For TIBCO eFTL - Enterprise Edition versions 6.0.0 through 6.7.3, update to a version that contains a fix for this vulnerability. For TIBCO eFTL - Enterprise Edition version 6.8.0, update to a version that contains a fix for this vulnerability. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

CVE-2022-30574

Affected Products

Tibco Ftl