CVE-2012-0689: Infoleak
The server in TIBCO ActiveMatrix Platform in TIBCO Silver Fabric ActiveMatrix Service Grid Distribution 3.1.3, Service Grid and Service Bus 3.x before 3.1.5, BusinessWorks Service Engine 5.9.x before 5.9.3, and BPM before 1.3.0 allows remote attackers to discover credentials via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-0689?
CVE-2012-0689 is classified as a medium severity vulnerability.
How do I fix CVE-2012-0689?
To fix CVE-2012-0689, you should upgrade affected TIBCO products to versions 3.1.5 or later for Service Grid, and 5.9.3 for BusinessWorks Service Engine.
What software is affected by CVE-2012-0689?
CVE-2012-0689 affects TIBCO ActiveMatrix BPM versions 1.0.1, 1.0.2, BusinessWorks Service Engine version 5.9.0, and various versions of Service Bus and Service Grid.
What type of vulnerability is CVE-2012-0689?
CVE-2012-0689 is a credential discovery vulnerability that allows remote attackers to access sensitive information.
Is there a patch available for CVE-2012-0689?
Yes, TIBCO has released patches for CVE-2012-0689 in the updated versions of the affected software.