Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-35498

Опубликовано: 13 окт. 2021
Источник: nvd
CVSS3: 9.8
CVSS2: 9.3
EPSS Низкий

Описание

The TIBCO EBX Web Server component of TIBCO Software Inc.'s TIBCO EBX, TIBCO EBX, TIBCO EBX, and TIBCO Product and Service Catalog powered by TIBCO EBX contains a vulnerability that under certain specific conditions allows an attacker to enter a password other than the legitimate password and it will be accepted as valid. Affected releases are TIBCO Software Inc.'s TIBCO EBX: versions 5.8.123 and below, TIBCO EBX: versions 5.9.3, 5.9.4, 5.9.5, 5.9.6, 5.9.7, 5.9.8, 5.9.9, 5.9.10, 5.9.11, 5.9.12, 5.9.13, and 5.9.14, TIBCO EBX: versions 6.0.0 and 6.0.1, and TIBCO Product and Service Catalog powered by TIBCO EBX: version 1.0.0.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:tibco:ebx:*:*:*:*:*:*:*:*
Версия до 5.8.124 (исключая)
cpe:2.3:a:tibco:ebx:*:*:*:*:*:*:*:*
Версия от 5.9.3 (включая) до 5.9.15 (исключая)
cpe:2.3:a:tibco:ebx:*:*:*:*:*:*:*:*
Версия от 6.0.0 (включая) до 6.0.2 (исключая)
cpe:2.3:a:tibco:product_and_service_catalog_powered_by_tibco_ebx:1.0.0:*:*:*:*:*:*:*

EPSS

Процентиль: 54%
0.00312
Низкий

9.8 Critical

CVSS3

9.3 Critical

CVSS2

Дефекты

CWE-521

Связанные уязвимости

github
больше 3 лет назад

The TIBCO EBX Web Server component of TIBCO Software Inc.'s TIBCO EBX, TIBCO EBX, TIBCO EBX, and TIBCO Product and Service Catalog powered by TIBCO EBX contains a vulnerability that under certain specific conditions allows an attacker to enter a password other than the legitimate password and it will be accepted as valid. Affected releases are TIBCO Software Inc.'s TIBCO EBX: versions 5.8.123 and below, TIBCO EBX: versions 5.9.3, 5.9.4, 5.9.5, 5.9.6, 5.9.7, 5.9.8, 5.9.9, 5.9.10, 5.9.11, 5.9.12, 5.9.13, and 5.9.14, TIBCO EBX: versions 6.0.0 and 6.0.1, and TIBCO Product and Service Catalog powered by TIBCO EBX: version 1.0.0.

EPSS

Процентиль: 54%
0.00312
Низкий

9.8 Critical

CVSS3

9.3 Critical

CVSS2

Дефекты

CWE-521