CVE-2021-43050
TIBCO BusinessConnect Container Edition administrative username and passwords leakage
Vexday Risk Score
21Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 8.4EPSS 0.2%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
15 feb 2022Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
The Auth Server component of TIBCO Software Inc.'s TIBCO BusinessConnect Container Edition contains an easily exploitable vulnerability that allows an unauthenticated attacker with local access to obtain administrative usernames and passwords for the affected system. Affected releases are TIBCO Software Inc.'s TIBCO BusinessConnect Container Edition: versions 1.1.0 and below.
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Productos afectados
TIBCO Software Inc. · TIBCO BusinessConnect Container Edition¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →