The Web Server component of TIBCO Software Inc.'s TIBCO BusinessConnect Trading Community Management contains easily exploitable Reflected Cross Site Scripting (XSS) vulnerabilities that allow an unauthenticated attacker with network access to execute scripts targeting the affected system or the victim's local system. Affected releases are TIBCO Software Inc.'s TIBCO BusinessConnect Trading Community Management: versions 6.1.0 and below.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-27920 | The Web Server component of TIBCO Software Inc.'s TIBCO BusinessConnect Trading Community Management contains easily exploitable Reflected Cross Site Scripting (XSS) vulnerabilities that allow an unauthenticated attacker with network access to execute scripts targeting the affected system or the victim's local system. Affected releases are TIBCO Software Inc.'s TIBCO BusinessConnect Trading Community Management: versions 6.1.0 and below. |
Fixes
Solution
TIBCO has released updated versions of the affected components which address these issues. TIBCO BusinessConnect Trading Community Management versions 6.1.0 and below: update to version 6.1.1 or later
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: tibco
Published:
Updated: 2024-09-16T16:49:14.776Z
Reserved: 2022-01-07T00:00:00
Link: CVE-2022-22777
No data.
Status : Modified
Published: 2022-05-18T17:15:08.530
Modified: 2024-11-21T06:47:25.723
Link: CVE-2022-22777
No data.
OpenCVE Enrichment
No data.
EUVD