CyberSec.Space Logo
Back to CVE Browser

CVE-2018-18814

HIGH
8.8
CVSS Severity Score
EPSS Score0.1660%
EPSS Percentile7.54th
PublishedJan 16, 2019
Last ModifiedNov 21, 2024

Vulnerability Description

The TIBCO Spotfire authentication component of TIBCO Software Inc.'s TIBCO Spotfire Analytics Platform for AWS Marketplace, and TIBCO Spotfire Server contains a vulnerability in the handling of the authentication that theoretically may allow an attacker to gain full access to a target account, independent of configured authentication mechanisms. Affected releases are TIBCO Software Inc. TIBCO Spotfire Analytics Platform for AWS Marketplace: versions up to and including 10.0.0, and TIBCO Spotfire Server: versions up to and including 7.10.1; 7.11.0; 7.11.1; 7.12.0; 7.13.0; 7.14.0.

Affected Platforms (CPE)

πŸ“¦
Tibco

Spotfire Analytics Platform For Aws

<= 10.0.0
πŸ“¦
Tibco

Spotfire Server

<= 7.10.1
πŸ“¦
Tibco

Spotfire Server

= 7.11.0
πŸ“¦
Tibco

Spotfire Server

= 7.11.1
πŸ“¦
Tibco

Spotfire Server

= 7.12.0
πŸ“¦
Tibco

Spotfire Server

= 7.13.0
πŸ“¦
Tibco

Spotfire Server

= 7.14.0

References & Advisories

Related Vulnerabilities