The Web Client component of TIBCO Software Inc.'s TIBCO Nimbus contains an easily exploitable vulnerability that allows an unauthenticated attacker with network access to exploit an open redirect on the affected system. A successful attack using this vulnerability requires human interaction from a person other than the attacker. Affected releases are TIBCO Software Inc.'s TIBCO Nimbus: version 10.5.0.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-44751 | The Web Client component of TIBCO Software Inc.'s TIBCO Nimbus contains an easily exploitable vulnerability that allows an unauthenticated attacker with network access to exploit an open redirect on the affected system. A successful attack using this vulnerability requires human interaction from a person other than the attacker. Affected releases are TIBCO Software Inc.'s TIBCO Nimbus: version 10.5.0. |
Fixes
Solution
TIBCO has released updated versions of the affected components which address these issues. TIBCO Nimbus version 10.5.0: update to version 10.5.1 or later
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.tibco.com/services/support/advisories |
|
History
Tue, 22 Apr 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: tibco
Published:
Updated: 2025-04-22T20:14:04.667Z
Reserved: 2022-09-26T00:00:00.000Z
Link: CVE-2022-41559
Updated: 2024-08-03T12:42:46.254Z
Status : Modified
Published: 2022-12-06T19:15:10.043
Modified: 2025-04-22T21:15:43.580
Link: CVE-2022-41559
No data.
OpenCVE Enrichment
No data.
EUVD