The server component of TIBCO Software Inc.'s TIBCO EBX Add-ons contains a vulnerability that allows an attacker with low-privileged application access to read system files that are accessible to the web server. Affected releases are TIBCO Software Inc.'s TIBCO EBX Add-ons: versions 4.5.16 and below.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-30040 | The server component of TIBCO Software Inc.'s TIBCO EBX Add-ons contains a vulnerability that allows an attacker with low-privileged application access to read system files that are accessible to the web server. Affected releases are TIBCO Software Inc.'s TIBCO EBX Add-ons: versions 4.5.16 and below. |
Fixes
Solution
TIBCO has released updated versions of the affected components which address these issues. TIBCO EBX Add-ons versions 4.5.16 and below: update to version 4.5.17 or later
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.tibco.com/services/support/advisories |
|
History
Thu, 16 Jan 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-203 | |
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: tibco
Published:
Updated: 2025-01-16T18:38:07.866Z
Reserved: 2023-02-20T22:18:23.427Z
Link: CVE-2023-26215
Updated: 2024-08-02T11:46:23.331Z
Status : Modified
Published: 2023-05-25T19:15:14.067
Modified: 2025-01-16T19:15:27.577
Link: CVE-2023-26215
No data.
OpenCVE Enrichment
No data.
EUVD