← Back

CVE-2017-5530

nvd nist
Published: Dec 13, 2017Modified: May 13, 2026

JSON object

Loading...
8.1
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
Exploitability: 2.8 / Impact: 5.2
Source: NVD

Description

The tibbr web server components of tibbr Community, and tibbr Enterprise contain SAML protocol handling errors which may allow authorized users to impersonate other users, and therefore escalate their access privileges. Affected releases are tibbr Community 5.2.1 and below; 6.0.0; 6.0.1; 7.0.0, tibbr Enterprise 5.2.1 and below; 6.0.0; 6.0.1; 7.0.0.

Affected (8)

Products: Tibco: Tibbr
1 product
Tibbr
Configuration A
4 vulnerable
Vulnerable SoftwareAffected Versions
Tibco
Up to 5.2.1
Version 6.0.0
Version 6.0.1
Version 7.0.0
Configuration B
4 vulnerable
Vulnerable SoftwareAffected Versions
Tibco
Up to 5.2.1
Version 6.0.0
Version 6.0.1
Version 7.0.0

Timeline

No history available yet.