CVE-2020-27147: TIBCO PartnerExpress REST API
The REST API component of TIBCO Software Inc.'s TIBCO PartnerExpress contains a vulnerability that theoretically allows an unauthenticated attacker with network access to obtain an authenticated login URL for the affected system via a REST API. Affected releases are TIBCO Software Inc.'s TIBCO PartnerExpress: version 6.2.0.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2020-27147?
CVE-2020-27147 is a vulnerability in the REST API component of TIBCO PartnerExpress that allows an unauthenticated attacker to obtain an authenticated login URL.
What is the severity of CVE-2020-27147?
The severity of CVE-2020-27147 is medium with a severity score of 6.5.
How does CVE-2020-27147 affect TIBCO PartnerExpress?
CVE-2020-27147 affects TIBCO PartnerExpress versions 6.2.0.
How can an attacker exploit CVE-2020-27147?
An unauthenticated attacker with network access can exploit CVE-2020-27147 to obtain an authenticated login URL for the affected system via a REST API.
How can I fix CVE-2020-27147?
To fix CVE-2020-27147, users are advised to apply the necessary patches or updates provided by TIBCO Software Inc.