The web application of the TIBCO Statistica component of TIBCO Software Inc.'s TIBCO Statistica Server contains vulnerabilities which may allow an authenticated user to perform cross-site scripting (XSS) attacks. Affected releases are TIBCO Software Inc.'s TIBCO Statistica Server versions up to and including 13.4.0.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-10523 | The web application of the TIBCO Statistica component of TIBCO Software Inc.'s TIBCO Statistica Server contains vulnerabilities which may allow an authenticated user to perform cross-site scripting (XSS) attacks. Affected releases are TIBCO Software Inc.'s TIBCO Statistica Server versions up to and including 13.4.0. |
Fixes
Solution
TIBCO has released updated versions of the affected components which address these issues. For each affected system, update to the corresponding software versions: TIBCO Statistica Server version 13.4.0 and below update the TIBCO Statistica component to 13.5.0 or above.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: tibco
Published:
Updated: 2024-09-16T19:51:25.569Z
Reserved: 2018-10-29T00:00:00
Link: CVE-2018-18807
No data.
Status : Modified
Published: 2018-11-26T20:29:00.450
Modified: 2024-11-21T03:56:39.450
Link: CVE-2018-18807
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD