First published: Tue Oct 17 2017(Updated: )
Deployments of TIBCO Managed File Transfer Command Center versions 8.0.0 and 8.0.1 and TIBCO Managed File Transfer Internet Server versions 8.0.0 and 8.0.1 that enable the Administrator Service may be affected by a vulnerability which may allow any authenticated user to gain administrative control of Managed File Transfer web applications.
Credit: security@tibco.com
Affected Software | Affected Version | How to fix |
---|---|---|
TIBCO Managed File Transfer Command Center | =8.0.0 | |
TIBCO Managed File Transfer Command Center | =8.0.1 | |
TIBCO Managed File Transfer Internet Server | =8.0.0 | |
TIBCO Managed File Transfer Internet Server | =8.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-5531 has a high severity level as it allows authenticated users to gain administrative control.
To fix CVE-2017-5531, upgrade to TIBCO Managed File Transfer Command Center or Internet Server versions 8.0.2 or later.
CVE-2017-5531 affects TIBCO Managed File Transfer Command Center versions 8.0.0 and 8.0.1 and TIBCO Managed File Transfer Internet Server versions 8.0.0 and 8.0.1.
CVE-2017-5531 is an authentication vulnerability that allows unauthorized administrative access.
There are no known workarounds for CVE-2017-5531; updating to a secure version is the recommended action.