Vulnerability index

Browse CVEs

203 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Jasperreports Server HIGH 8.8
CVE-2018-5430 KEVEPSS 50%

The Spring web flows of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server Community Edition, TIBCO JasperReports Server fo…

Fix: after 6.4.2
Fix from $1,950 2018-04-17
Jasperreports Server MEDIUM 5.4
CVE-2018-5431

The domain designer component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server Community Edition, TIBCO JasperReports …

Fix: after 6.4.2
Fix from $1,600 2018-04-17
Tibbr HIGH 8.8
CVE-2017-5534

The tibbr user profiles components of tibbr Community, and tibbr Enterprise expose a weakness in an improperly sandboxed third-party component. Affec…

Fix: after 5.2.1
Fix from $1,950 2017-12-13
Tibbr HIGH 8.1
CVE-2017-5530

The tibbr web server components of tibbr Community, and tibbr Enterprise contain SAML protocol handling errors which may allow authorized users to im…

Fix: after 5.2.1
Fix from $1,950 2017-12-13
Jasperreports Server CRITICAL 9.8
CVE-2017-5533

A vulnerability in the server content cache of TIBCO JasperReports Server, TIBCO JasperReports Server Community Edition, TIBCO JasperReports Server f…

Mitigation only
Fix from $2,300 2017-11-15
Jasperreports Server MEDIUM 5.4
CVE-2017-5532

A vulnerability in the report renderer component of TIBCO JasperReports Server, TIBCO JasperReports Server Community Edition, TIBCO JasperReports Ser…

Fix: after 6.4.1
Fix from $1,600 2017-11-15
Managed File Transfer Command Center HIGH 8.8
CVE-2017-5531

Deployments of TIBCO Managed File Transfer Command Center versions 8.0.0 and 8.0.1 and TIBCO Managed File Transfer Internet Server versions 8.0.0 and…

Mitigation only
Fix from $1,950 2017-10-17
Jasperreports Server HIGH 8.8
CVE-2017-5528

Multiple JasperReports Server components contain vulnerabilities which may allow authorized users to perform cross-site scripting (XSS) and cross-sit…

Fix: after 6.3.0
Fix from $1,950 2017-06-29
Jasperreports Library Community Edition MEDIUM 6.5
CVE-2017-5529

JasperReports library components contain an information disclosure vulnerability. This vulnerability includes the theoretical disclosure of any acces…

Fix: after 6.4.0
Fix from $1,600 2017-06-29
Spotfire Analytics Platform For Aws MEDIUM 6.5
CVE-2017-5527

TIBCO Spotfire Server 7.0.X before 7.0.2, 7.5.x before 7.5.1, 7.6.x before 7.6.1, 7.7.x before 7.7.1, and 7.8.x before 7.8.1 and Spotfire Analytics P…

Fix: after 7.8.0
Fix from $1,600 2017-05-09
Enterprise Message Service Appliance Firmware HIGH 8.8
CVE-2016-3628

Buffer overflow in tibemsd in the server in TIBCO Enterprise Message Service (EMS) before 8.3.0 and EMS Appliance before 2.4.0 allows remote authenti…

Fix: after 8.2.2
Fix from $1,950 2016-04-20
Spotfire Server MEDIUM 5.0
CVE-2015-5713

Spotfire Parsing Library and Spotfire Security Filter in TIBCO Spotfire Server 5.5.x before 5.5.4, 6.0.x before 6.0.5, 6.5.x before 6.5.4, and 7.0.x …

Fix: after 7.0.1
Fix from $1,600 2015-10-28
Messaging Appliance HIGH 7.5
CVE-2015-4555

Buffer overflow in the HTTP administrative interface in TIBCO Rendezvous before 8.4.4, Rendezvous Network Server before 1.1.1, Substation ES before 2…

Fix: after 8.7.1
Fix from $1,950 2015-08-30
Spotfire Deployment Kit HIGH 7.5
CVE-2015-4554

Multiple unspecified vulnerabilities in TIBCO Spotfire Client and Spotfire Web Player Client in Spotfire Analyst before 5.5.2, 6.0.x before 6.0.3, 6.…

Fix: after 6.5.1
Fix from $1,950 2015-07-21
Activematrix Management Agent MEDIUM 6.4
CVE-2014-5286

The ActiveMatrix Policy Manager Authentication module in TIBCO ActiveMatrix Policy Agent 3.x before 3.1.2, ActiveMatrix Policy Manager 3.x before 3.1…

Mitigation only
Fix from $1,600 2015-02-19
Managed File Transfer Internet Server MEDIUM 6.4
CVE-2014-7194

TIBCO Managed File Transfer Internet Server before 7.2.4, Managed File Transfer Command Center before 7.2.4, Slingshot before 1.9.3, and Vault before…

Fix: after 7.2.3
Fix from $1,600 2014-11-21
Spotfire Server HIGH 7.5
CVE-2014-5285

Unspecified vulnerability in the Authentication Module in TIBCO Spotfire Server before 4.5.2, 5.0.x before 5.0.3, 5.5.x before 5.5.2, 6.0.x before 6.…

Fix: after 4.5.1
Fix from $1,950 2014-09-04
Slingshot MEDIUM 5.0
CVE-2014-2545

TIBCO Managed File Transfer Internet Server before 7.2.2, Managed File Transfer Command Center before 7.2.2, Slingshot before 1.9.1, and Vault before…

Fix: after 7.2.1
Fix from $1,600 2014-04-30
Web Player HIGH 7.5
CVE-2014-2544

Unspecified vulnerability in Spotfire Web Player Engine, Spotfire Desktop, and Spotfire Server Authentication Module in TIBCO Spotfire Server 3.3.x b…

Fix: after 6.0.0
Fix from $1,950 2014-04-10
Rendezvous HIGH 7.5
CVE-2014-2543

Buffer overflow in the Rendezvous Daemon (rvd), Rendezvous Routing Daemon (rvrd), Rendezvous Secure Daemon (rvsd), and Rendezvous Secure Routing Daem…

Fix: after 8.7.0
Fix from $1,950 2014-04-08
Rendezvous MEDIUM 5.0
CVE-2014-2541

The Rendezvous Daemon (rvd), Rendezvous Routing Daemon (rvrd), Rendezvous Secure Daemon (rvsd), and Rendezvous Secure Routing Daemon (rvsrd) in TIBCO…

Fix: after 8.7.0
Fix from $1,600 2014-04-08
Enterprise Administrator HIGH 10.0
CVE-2014-2075

TIBCO Enterprise Administrator 1.0.0 and Enterprise Administrator SDK 1.0.0 do not properly enforce administrative authentication requirements, which…

Mitigation only
Fix from $1,950 2014-02-27
Silver Mobile MEDIUM 6.5
CVE-2013-3315

The server in TIBCO Silver Mobile 1.1.0 does not properly verify access to the administrator role before executing a command, which allows authentica…

Mitigation only
Fix from $1,600 2013-05-31
Spotfire Web Player MEDIUM 6.4
CVE-2013-2373

The Engine in TIBCO Spotfire Web Player 3.3.x before 3.3.3, 4.0.x before 4.0.3, 4.5.x before 4.5.1, and 5.0.x before 5.0.1 does not properly implemen…

Mitigation only
Fix from $1,600 2013-03-15
Spotfire Statistics Services MEDIUM 5.0
CVE-2013-2371

The Web API in the Statistics Server in TIBCO Spotfire Statistics Services 3.3.x before 3.3.1, 4.5.x before 4.5.1, and 5.0.x before 5.0.1 allows remo…

Mitigation only
Fix from $1,600 2013-03-15
Formvine HIGH 7.5
CVE-2012-5302

The server in TIBCO Formvine 3.1.x and 3.2.x before 3.2.1 does not properly implement access control, which allows remote attackers to obtain sensiti…

Mitigation only
Fix from $1,950 2012-10-24
Activematrix Service Bus MEDIUM 5.0
CVE-2012-0687

TIBCO ActiveMatrix Runtime Platform in Service Grid and Service Bus 2.x before 2.3.2 and BusinessWorks Service Engine before 5.8.2; TIBCO ActiveMatri…

Fix: after 5.9.2
Fix from $1,600 2012-03-13
Activematrix Bpm MEDIUM 5.0
CVE-2012-0689

The server in TIBCO ActiveMatrix Platform in TIBCO Silver Fabric ActiveMatrix Service Grid Distribution 3.1.3, Service Grid and Service Bus 3.x befor…

Mitigation only
Fix from $1,600 2012-03-13
Spotfire Analytics Server MEDIUM 5.0
CVE-2012-0690

TIBCO Spotfire Web Application, Web Player Application, Automation Services Application, and Analytics Client Application in Spotfire Analytics Serve…

Fix: after 4.0.1
Fix from $1,600 2012-03-13
Spotfire Analytics Server HIGH 7.5
CVE-2011-3134

Unspecified vulnerability in TIBCO Spotfire Server 3.0.x before 3.0.2, 3.1.x before 3.1.2, 3.2.x before 3.2.1, and 3.3.x before 3.3.1, and Spotfire A…

Fix: after 10.0.1
Fix from $1,950 2011-09-02