CVE-2019-11206: TIBCO Spotfire Server Vulnerabilities With Integrity of Comments and Bookmarks
The Spotfire library component of TIBCO Software Inc.'s TIBCO Spotfire Analytics Platform for AWS Marketplace, and TIBCO Spotfire Server contains vulnerabilities that theoretically allow a malicious user to undermine the integrity of comments and bookmarks. Affected releases are TIBCO Software Inc.'s TIBCO Spotfire Analytics Platform for AWS Marketplace: versions up to and including 10.2.0, and TIBCO Spotfire Server: versions up to and including 7.11.2; 7.12.0; 7.13.0; 7.14.0; 10.0.0; 10.0.1; 10.1.0; and 10.2.0.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2019-11206.
What is the severity level of CVE-2019-11206?
The severity level of CVE-2019-11206 is medium.
Which TIBCO products are affected by CVE-2019-11206?
The TIBCO Spotfire Analytics Platform for AWS Marketplace and TIBCO Spotfire Server versions up to 10.2.0 are affected by CVE-2019-11206.
What are the potential impacts of this vulnerability?
The vulnerability theoretically allows a malicious user to undermine the integrity of comments and bookmarks.
Where can I find more information about CVE-2019-11206?
You can find more information about CVE-2019-11206 on the following links: [SecurityFocus](http://www.securityfocus.com/bid/108405), [TIBCO Security Advisory](https://www.tibco.com/support/advisories/2019/05/tibco-security-advisory-may-14-2019-tibco-spotfire-server-2019-11206).