The application server component of TIBCO Software Inc.'s TIBCO Data Science for AWS, and TIBCO Spotfire Data Science contains a persistent cross-site contains a vulnerability that theoretically allows a user to escalate their privileges on the affected system, in a way that may allow for data modifications and deletions that should be denied. Affected releases are TIBCO Software Inc.'s TIBCO Data Science for AWS: versions up to and including 6.4.0, and TIBCO Spotfire Data Science: versions up to and including 6.4.0.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: tibco

Published: 2019-03-26T17:54:12.315596Z

Updated: 2024-09-17T00:26:21.220Z

Reserved: 2019-02-21T00:00:00

Link: CVE-2019-8988

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2019-03-26T18:29:01.217

Modified: 2022-10-14T09:33:11.960

Link: CVE-2019-8988

cve-icon Redhat

No data.