Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-32843 | The Splus Server component of TIBCO Software Inc.'s TIBCO Spotfire Statistics Services contains a vulnerability that allows an unauthenticated remote attacker to upload or modify arbitrary files within the web server directory on the affected system. Affected releases are TIBCO Software Inc.'s TIBCO Spotfire Statistics Services: versions 11.4.10 and below, versions 11.5.0, 11.6.0, 11.6.1, 11.6.2, 11.7.0, 11.8.0, 11.8.1, 12.0.0, 12.0.1, and 12.0.2, versions 12.1.0 and 12.2.0. |
Solution
TIBCO has released updated versions of the affected components which address these issues. TIBCO Spotfire Statistics Services versions 11.4.10 and below: update to version 11.4.11 or later TIBCO Spotfire Statistics Services versions 11.5.0, 11.6.0, 11.6.1, 11.6.2, 11.7.0, 11.8.0, 11.8.1, 12.0.0, 12.0.1, and 12.0.2: update to version 12.0.3 or later TIBCO Spotfire Statistics Services versions 12.1.0 and 12.2.0: update to version 12.3.0 or later
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://www.tibco.com/services/support/advisories |
|
Thu, 30 Jan 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: tibco
Published:
Updated: 2025-01-30T21:39:54.123Z
Reserved: 2023-04-04T19:06:51.372Z
Link: CVE-2023-29268
Updated: 2024-08-02T14:00:16.019Z
Status : Modified
Published: 2023-04-26T18:15:09.160
Modified: 2025-01-30T22:15:07.977
Link: CVE-2023-29268
No data.
OpenCVE Enrichment
No data.
EUVD