← Back

CVE-2020-9415

nvd nist
Published: Aug 18, 2020Modified: Jun 17, 2026

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitability: 2.8 / Impact: 3.6
Source: NVD

Description

The TIBCO Data Virtualization Server component of TIBCO Software Inc.'s TIBCO Data Virtualization and TIBCO Data Virtualization for AWS Marketplace contains a vulnerability that theoretically allows a malicious authenticated user to download any arbitrary file from the affected system. The user must be authenticated and have privileges required to monitor the server in an operational capacity. Affected releases are TIBCO Software Inc.'s TIBCO Data Virtualization: versions 7.0.8 and below, versions 8.0.0, 8.1.0, 8.1.1, and 8.2.0 and TIBCO Data Virtualization for AWS Marketplace: versions 8.2.0 and below.

Affected (6)

2 products
Data Virtualization
Configuration A
6 vulnerable
Vulnerable SoftwareAffected Versions
Tibco
Up to 7.0.8
Version 8.0.0
Version 8.1.0
Version 8.1.1
Version 8.2.0
Up to 8.2.0

Timeline

No history available yet.