CyberSec.Space Logo
CVEブラウザに戻る

CVE-2018-18814

HIGH
8.8
CVSS Severity Score
EPSS Score0.1660%
EPSS Percentile7.54th
Published2019年1月16日
Last Modified2024年11月21日

Vulnerability Description

The TIBCO Spotfire authentication component of TIBCO Software Inc.'s TIBCO Spotfire Analytics Platform for AWS Marketplace, and TIBCO Spotfire Server contains a vulnerability in the handling of the authentication that theoretically may allow an attacker to gain full access to a target account, independent of configured authentication mechanisms. Affected releases are TIBCO Software Inc. TIBCO Spotfire Analytics Platform for AWS Marketplace: versions up to and including 10.0.0, and TIBCO Spotfire Server: versions up to and including 7.10.1; 7.11.0; 7.11.1; 7.12.0; 7.13.0; 7.14.0.

Affected Platforms (CPE)

📦
Tibco

Spotfire Analytics Platform For Aws

<= 10.0.0
📦
Tibco

Spotfire Server

<= 7.10.1
📦
Tibco

Spotfire Server

= 7.11.0
📦
Tibco

Spotfire Server

= 7.11.1
📦
Tibco

Spotfire Server

= 7.12.0
📦
Tibco

Spotfire Server

= 7.13.0
📦
Tibco

Spotfire Server

= 7.14.0

References & Advisories

関連する脆弱性情報