Tibco
tibco
226 CVEs • 179 products
Products (179)
Click to collapseToggle
Products (179)
Click to collapse
CVEs (226)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Tibco 3Messaging Appliance RendezvousSubstantiation EsMay 6, 2026 Apr 8, 2014 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The Rendezvous Daemon (rvd), Rendezvous Routing Daemon (rvrd), Rendezvous Secure Daemon (rvsd), and Rendezvous Secure Routing Daemon (rvsrd) in TIBCO Rendezvous before 8.4.2, Messaging Appliance before 8.7.1, and Substat...Show more |
1Tibco 2Enterprise Administrator Enterprise Administrator SdkApr 29, 2026 Feb 27, 2014 N/A· v4 N/A· v3 10.0 HIGH· v2 TIBCO Enterprise Administrator 1.0.0 and Enterprise Administrator SDK 1.0.0 do not properly enforce administrative authentication requirements, which allows remote attackers to execute arbitrary commands via unspecified...Show more |
The server in TIBCO Silver Mobile 1.1.0 does not properly verify access to the administrator role before executing a command, which allows authenticated users to gain privileges via unspecified vectors. |
The Engine in TIBCO Spotfire Web Player 3.3.x before 3.3.3, 4.0.x before 4.0.3, 4.5.x before 4.5.1, and 5.0.x before 5.0.1 does not properly implement access control, which allows remote attackers to obtain sensitive inf...Show more |
Cross-site scripting (XSS) vulnerability in the Engine in TIBCO Spotfire Web Player 3.3.x before 3.3.3, 4.0.x before 4.0.3, 4.5.x before 4.5.1, and 5.0.x before 5.0.1 allows remote attackers to inject arbitrary web scrip...Show more |
1Tibco 1Spotfire Statistics Services Apr 29, 2026 Mar 15, 2013 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The Web API in the Statistics Server in TIBCO Spotfire Statistics Services 3.3.x before 3.3.1, 4.5.x before 4.5.1, and 5.0.x before 5.0.1 allows remote attackers to obtain sensitive information via an unspecified HTTP re...Show more |
The server in TIBCO Formvine 3.1.x and 3.2.x before 3.2.1 does not properly implement access control, which allows remote attackers to obtain sensitive information or modify data via unspecified vectors. |
1Tibco 4Spotfire Analytics Server Spotfire ProfessionalSpotfire Server+1 moreApr 29, 2026 Mar 13, 2012 N/A· v4 N/A· v3 5.0 MEDIUM· v2 TIBCO Spotfire Web Application, Web Player Application, Automation Services Application, and Analytics Client Application in Spotfire Analytics Server before 10.1.2; Server before 3.3.3; and Web Player, Automation Servic...Show more |
1Tibco 5Activematrix Bpm Activematrix Businessworks Service EngineActivematrix Service Bus+2 moreApr 29, 2026 Mar 13, 2012 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The server in TIBCO ActiveMatrix Platform in TIBCO Silver Fabric ActiveMatrix Service Grid Distribution 3.1.3, Service Grid and Service Bus 3.x before 3.1.5, BusinessWorks Service Engine 5.9.x before 5.9.3, and BPM befor...Show more |
1Tibco 5Activematrix Bpm Activematrix Businessworks Service EngineActivematrix Service Bus+2 moreApr 29, 2026 Mar 13, 2012 N/A· v4 N/A· v3 4.3 MEDIUM· v2 Cross-site scripting (XSS) vulnerability in TIBCO ActiveMatrix Platform in TIBCO Silver Fabric ActiveMatrix Service Grid Distribution 3.1.3, Service Grid and Service Bus 3.x before 3.1.5, BusinessWorks Service Engine 5.9...Show more |
1Tibco 7Activematrix Bpm Activematrix BusinessworksActivematrix Businessworks Service Engine+4 moreApr 29, 2026 Mar 13, 2012 N/A· v4 N/A· v3 5.0 MEDIUM· v2 TIBCO ActiveMatrix Runtime Platform in Service Grid and Service Bus 2.x before 2.3.2 and BusinessWorks Service Engine before 5.8.2; TIBCO ActiveMatrix Platform in TIBCO Silver Fabric ActiveMatrix Service Grid Distributio...Show more |
1Tibco 3Managed File Transfer Command Center Managed File Transfer Internet ServerSlingshotApr 29, 2026 Sep 19, 2011 N/A· v4 N/A· v3 4.3 MEDIUM· v2 Session fixation vulnerability in the Managed File Transfer server in TIBCO Managed File Transfer Internet Server before 7.1.1 and Managed File Transfer Command Center before 7.1.1, and the server in TIBCO Slingshot befo...Show more |
1Tibco 3Managed File Transfer Command Center Managed File Transfer Internet ServerSlingshotApr 29, 2026 Sep 19, 2011 N/A· v4 N/A· v3 4.3 MEDIUM· v2 Cross-site scripting (XSS) vulnerability in the Managed File Transfer server in TIBCO Managed File Transfer Internet Server before 7.1.1 and Managed File Transfer Command Center before 7.1.1, and the server in TIBCO Slin...Show more |
1Tibco 2Spotfire Analytics Server Spotfire ServerApr 29, 2026 Sep 2, 2011 N/A· v4 N/A· v3 7.5 HIGH· v2 Unspecified vulnerability in TIBCO Spotfire Server 3.0.x before 3.0.2, 3.1.x before 3.1.2, 3.2.x before 3.2.1, and 3.3.x before 3.3.1, and Spotfire Analytics Server before 10.1.1, allows remote attackers to modify data o...Show more |
1Tibco 2Spotfire Analytics Server Spotfire ServerApr 29, 2026 Sep 2, 2011 N/A· v4 N/A· v3 4.3 MEDIUM· v2 Session fixation vulnerability in TIBCO Spotfire Server 3.0.x before 3.0.2, 3.1.x before 3.1.2, 3.2.x before 3.2.1, and 3.3.x before 3.3.1, and Spotfire Analytics Server before 10.1.1, allows remote attackers to hijack w...Show more |
1Tibco 2Spotfire Analytics Server Spotfire ServerApr 29, 2026 Sep 2, 2011 N/A· v4 N/A· v3 4.3 MEDIUM· v2 Cross-site scripting (XSS) vulnerability in TIBCO Spotfire Server 3.0.x before 3.0.2, 3.1.x before 3.1.2, 3.2.x before 3.2.1, and 3.3.x before 3.3.1, and Spotfire Analytics Server before 10.1.1, allows remote attackers t...Show more |
1Tibco 2Iprocess Engine Iprocess WorkspaceApr 29, 2026 May 20, 2011 N/A· v4 N/A· v3 4.3 MEDIUM· v2 Session fixation vulnerability in TIBCO iProcess Engine before 11.1.3 and iProcess Workspace before 11.3.1 allows remote attackers to hijack web sessions via unspecified vectors. |
1Tibco 2Iprocess Engine Iprocess WorkspaceApr 29, 2026 May 20, 2011 N/A· v4 N/A· v3 4.3 MEDIUM· v2 Cross-site scripting (XSS) vulnerability in TIBCO iProcess Engine before 11.1.3 and iProcess Workspace before 11.3.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. |
Cross-site scripting (XSS) vulnerability in the tibbr web server, as used in TIBCO tibbr 1.0.0 through 1.5.0 and tibbr Service 1.0.0 through 1.5.0, allows remote attackers to inject arbitrary web script or HTML via unspe...Show more |
1Tibco 6Enterprise Message Service RendezvousRuntime Agent+3 moreApr 29, 2026 Feb 4, 2011 N/A· v4 N/A· v3 7.2 HIGH· v2 Multiple unspecified vulnerabilities in TIBCO Rendezvous 8.2.1 through 8.3.0, Enterprise Message Service (EMS) 5.1.0 through 6.0.0, Runtime Agent (TRA) 5.6.2 through 5.7.0, Silver BPM Service before 1.0.4, Silver CAP Ser...Show more |