CVE-2019-17333

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
19/02/2020
Last modified:
26/02/2020

Description

The Web server component of TIBCO Software Inc.'s TIBCO EBX contains a vulnerability that theoretically allows authenticated users to perform stored cross-site scripting (XSS) attacks. Affected releases are TIBCO Software Inc.'s TIBCO EBX: versions 5.8.1.fixS and below, versions 5.9.3, 5.9.4, 5.9.5, 5.9.6, and 5.9.7.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:tibco:ebx:*:*:*:*:*:*:*:* 5.8.1 (excluding)
cpe:2.3:a:tibco:ebx:*:*:*:*:*:*:*:* 5.9.3 (including) 5.9.7 (including)
cpe:2.3:a:tibco:ebx:5.8.1:-:*:*:*:*:*:*
cpe:2.3:a:tibco:ebx:5.8.1:fixr:*:*:*:*:*:*
cpe:2.3:a:tibco:ebx:5.8.1:fixs:*:*:*:*:*:*