← Back

CVE-2019-8986

nvd nist
Published: Mar 7, 2019Modified: Nov 21, 2024

JSON object

Loading...
7.7
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
Exploitability: 3.1 / Impact: 4.0
Source: NVD

Description

The SOAP API component vulnerability of TIBCO Software Inc.'s TIBCO JasperReports Server, and TIBCO JasperReports Server for ActiveMatrix BPM contains a vulnerability that may allow a malicious authenticated user to copy text files from the host operating system. Affected releases are TIBCO Software Inc.'s TIBCO JasperReports Server: versions up to and including 6.3.4; 6.4.0; 6.4.1; 6.4.2; 6.4.3, TIBCO JasperReports Server for ActiveMatrix BPM: versions up to and including 6.4.3.

Affected (6)

1 product
Jasperreports Server
Configuration A
6 vulnerable
Vulnerable SoftwareAffected Versions
Tibco
Up to 6.3.4
Up to 6.4.3
Version 6.4.0
Version 6.4.1
Version 6.4.2
Version 6.4.3

Timeline

No history available yet.