Описание
The Web API in the Statistics Server in TIBCO Spotfire Statistics Services 3.3.x before 3.3.1, 4.5.x before 4.5.1, and 5.0.x before 5.0.1 allows remote attackers to obtain sensitive information via an unspecified HTTP request.
Ссылки
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:tibco:spotfire_statistics_services:3.3:*:*:*:*:*:*:*
Конфигурация 2
cpe:2.3:a:tibco:spotfire_statistics_services:4.5.0:*:*:*:*:*:*:*
Конфигурация 3
cpe:2.3:a:tibco:spotfire_statistics_services:5.0.0:*:*:*:*:*:*:*
EPSS
Процентиль: 63%
0.00454
Низкий
5 Medium
CVSS2
Дефекты
CWE-200
Связанные уязвимости
github
больше 3 лет назад
The Web API in the Statistics Server in TIBCO Spotfire Statistics Services 3.3.x before 3.3.1, 4.5.x before 4.5.1, and 5.0.x before 5.0.1 allows remote attackers to obtain sensitive information via an unspecified HTTP request.
EPSS
Процентиль: 63%
0.00454
Низкий
5 Medium
CVSS2
Дефекты
CWE-200