First published: Tue Feb 02 2021(Updated: )
The TIBCO EBX Web Server component of TIBCO Software Inc.'s TIBCO EBX contains a vulnerability that theoretically allows a low privileged attacker with network access to execute a Stored Cross Site Scripting (XSS) attack on the affected system. Affected releases are TIBCO Software Inc.'s TIBCO EBX: versions 5.9.12 and below.
Credit: security@tibco.com
Affected Software | Affected Version | How to fix |
---|---|---|
TIBCO EBX | <=5.9.12 |
TIBCO has released updated versions of the affected components which address these issues. TIBCO EBX versions 5.9.12 and below update to version 5.9.13 or higher
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this TIBCO EBX vulnerability is CVE-2021-23271.
The severity of CVE-2021-23271 is high with a severity value of 8.
The affected software for CVE-2021-23271 is TIBCO EBX version 5.9.12.
The vulnerability type for CVE-2021-23271 is Stored Cross Site Scripting (XSS) attack.
A low privileged attacker with network access can execute a Stored Cross Site Scripting (XSS) attack on the affected system.