CVE-2010-0184

Severity CVSS v4.0:
Pending analysis
Type:
CWE-264 Permissions, Privileges, and Access Control
Publication date:
14/01/2010
Last modified:
09/04/2025

Description

The (1) domainutility and (2) domainutilitycmd components in TIBCO Domain Utility in TIBCO Runtime Agent (TRA) before 5.6.2, as used in TIBCO ActiveMatrix BusinessWorks and other products, set weak permissions on domain properties files, which allows local users to obtain domain administrator credentials, and gain privileges on all domain systems, via unspecified vectors.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:tibco:runtime_agent:*:*:*:*:*:*:*:* 5.6.1 (including)
cpe:2.3:a:tibco:runtime_agent:5.4.0:*:*:*:*:*:*:*
cpe:2.3:a:tibco:runtime_agent:5.5.3:*:*:*:*:*:*:*
cpe:2.3:a:tibco:runtime_agent:5.5.4:*:*:*:*:*:*:*
cpe:2.3:a:tibco:runtime_agent:5.6:*:*:*:*:*:*:*