Unknown
TIBCO Spotfire Product Family Information Disclosure Vulnerability
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
Unknown
(0 users assessed)Unknown
(0 users assessed)Unknown
Unknown
Unknown
TIBCO Spotfire Product Family Information Disclosure Vulnerability
MITRE ATT&CK
Collection
Command and Control
Credential Access
Defense Evasion
Discovery
Execution
Exfiltration
Impact
Initial Access
Lateral Movement
Persistence
Privilege Escalation
Topic Tags
Description
The TIBCO Spotfire Client and TIBCO Spotfire Web Player Client components of TIBCO Software Inc.’s TIBCO Spotfire Analyst, TIBCO Spotfire Analytics Platform for AWS Marketplace, TIBCO Spotfire Deployment Kit, TIBCO Spotfire Desktop, and TIBCO Spotfire Desktop Language Packs contain multiple vulnerabilities that may allow for unauthorized information disclosure. Affected releases are TIBCO Software Inc.’s TIBCO Spotfire Analyst: versions up to and including 7.8.0; 7.9.0; 7.9.1; 7.10.0; 7.10.1; 7.11.0; 7.12.0, TIBCO Spotfire Analytics Platform for AWS Marketplace: versions up to and including 7.12.0, TIBCO Spotfire Deployment Kit: versions up to and including 7.8.0; 7.9.0;7.9.1;7.10.0;7.10.1;7.11.0; 7.12.0, TIBCO Spotfire Desktop: versions up to and including 7.8.0; 7.9.0; 7.9.1; 7.10.0; 7.10.1; 7.11.0;7.12.0, TIBCO Spotfire Desktop Language Packs: versions up to and including 7.8.0; 7.9.0; 7.9.1; 7.10.0; 7.10.1; 7.11.0.
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
General Information
Vendors
Products
- spotfire analyst,
- spotfire analyst 7.10.0,
- spotfire analyst 7.10.1,
- spotfire analyst 7.11.0,
- spotfire analyst 7.12.0,
- spotfire analyst 7.9.0,
- spotfire analyst 7.9.1,
- spotfire analytics platform for aws,
- spotfire deployment kit,
- spotfire deployment kit 7.10.0,
- spotfire deployment kit 7.10.1,
- spotfire deployment kit 7.11.0,
- spotfire deployment kit 7.12.0,
- spotfire deployment kit 7.9.0,
- spotfire deployment kit 7.9.1,
- spotfire desktop,
- spotfire desktop 7.10.0,
- spotfire desktop 7.10.1,
- spotfire desktop 7.11.0,
- spotfire desktop 7.12.0,
- spotfire desktop 7.9.0,
- spotfire desktop 7.9.1,
- spotfire desktop language packs,
- spotfire desktop language packs 7.10.0,
- spotfire desktop language packs 7.10.1,
- spotfire desktop language packs 7.11.0,
- spotfire desktop language packs 7.9.0,
- spotfire desktop language packs 7.9.1
References
Miscellaneous
Additional Info
Technical Analysis
Report as Emergent Threat Response
Report as Zero-day Exploit
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: