Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-43046

Опубликовано: 16 нояб. 2021
Источник: nvd
CVSS3: 7.5
CVSS3: 8.8
CVSS2: 9.3
EPSS Низкий

Описание

The Interior Server and Gateway Server components of TIBCO Software Inc.'s TIBCO PartnerExpress contain an easily exploitable vulnerability that allows an unauthenticated attacker with network access to obtain session tokens for the affected system. A successful attack using this vulnerability requires human interaction from a person other than the attacker. Affected releases are TIBCO Software Inc.'s TIBCO PartnerExpress: versions 6.2.1 and below.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:tibco:partnerexpress:*:*:*:*:*:*:*:*
Версия до 6.2.1 (включая)

EPSS

Процентиль: 63%
0.00438
Низкий

7.5 High

CVSS3

8.8 High

CVSS3

9.3 Critical

CVSS2

Дефекты

NVD-CWE-noinfo

Связанные уязвимости

github
больше 3 лет назад

The Interior Server and Gateway Server components of TIBCO Software Inc.'s TIBCO PartnerExpress contain an easily exploitable vulnerability that allows an unauthenticated attacker with network access to obtain session tokens for the affected system. A successful attack using this vulnerability requires human interaction from a person other than the attacker. Affected releases are TIBCO Software Inc.'s TIBCO PartnerExpress: versions 6.2.1 and below.

EPSS

Процентиль: 63%
0.00438
Низкий

7.5 High

CVSS3

8.8 High

CVSS3

9.3 Critical

CVSS2

Дефекты

NVD-CWE-noinfo