Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-17330

Опубликовано: 12 нояб. 2019
Источник: nvd
CVSS3: 8.8
CVSS3: 9.6
CVSS2: 4.3
EPSS Низкий

Описание

The Web server component of TIBCO Software Inc.'s TIBCO EBX contains multiple vulnerabilities that theoretically allow authenticated users to perform stored cross-site scripting (XSS) attacks, and unauthenticated users to perform reflected cross-site scripting attacks. Affected releases are TIBCO Software Inc.'s TIBCO EBX: versions up to and including 5.8.1.fixR, versions 5.9.3, 5.9.4, 5.9.5, and 5.9.6.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:tibco:ebx:*:*:*:*:*:*:*:*
Версия до 5.8.1 (включая)
cpe:2.3:a:tibco:ebx:5.8.1:fixr:*:*:*:*:*:*
cpe:2.3:a:tibco:ebx:5.9.3:*:*:*:*:*:*:*
cpe:2.3:a:tibco:ebx:5.9.4:*:*:*:*:*:*:*
cpe:2.3:a:tibco:ebx:5.9.5:*:*:*:*:*:*:*
cpe:2.3:a:tibco:ebx:5.9.6:*:*:*:*:*:*:*

EPSS

Процентиль: 53%
0.00302
Низкий

8.8 High

CVSS3

9.6 Critical

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-79

Связанные уязвимости

github
больше 3 лет назад

The Web server component of TIBCO Software Inc.'s TIBCO EBX contains multiple vulnerabilities that theoretically allow authenticated users to perform stored cross-site scripting (XSS) attacks, and unauthenticated users to perform reflected cross-site scripting attacks. Affected releases are TIBCO Software Inc.'s TIBCO EBX: versions up to and including 5.8.1.fixR, versions 5.9.3, 5.9.4, 5.9.5, and 5.9.6.

EPSS

Процентиль: 53%
0.00302
Низкий

8.8 High

CVSS3

9.6 Critical

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-79