The Web Server component of TIBCO Software Inc.'s TIBCO EBX contains an easily exploitable vulnerability that allows a low privileged attacker with network access to execute Stored Cross Site Scripting (XSS) on the affected system. A successful attack using this vulnerability requires human interaction from a person other than the attacker. Affected releases are TIBCO Software Inc.'s TIBCO EBX: versions 6.0.0 through 6.0.8.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-52426 | The Web Server component of TIBCO Software Inc.'s TIBCO EBX contains an easily exploitable vulnerability that allows a low privileged attacker with network access to execute Stored Cross Site Scripting (XSS) on the affected system. A successful attack using this vulnerability requires human interaction from a person other than the attacker. Affected releases are TIBCO Software Inc.'s TIBCO EBX: versions 6.0.0 through 6.0.8. |
Fixes
Solution
TIBCO has released updated versions of the affected components which address these issues. TIBCO EBX versions 6.0.0 through 6.0.8: update to version 6.0.9 or later
Workaround
No workaround given by the vendor.
References
History
Thu, 22 May 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: tibco
Published:
Updated: 2025-05-22T18:31:58.704Z
Reserved: 2022-05-11T00:00:00.000Z
Link: CVE-2022-30577
Updated: 2024-08-03T06:56:12.860Z
Status : Modified
Published: 2022-09-21T18:15:09.967
Modified: 2025-05-22T19:15:31.047
Link: CVE-2022-30577
No data.
OpenCVE Enrichment
No data.
EUVD