CVE-2022-22770: TIBCO AuditSafe API Authentication vulnerability
The Web Server component of TIBCO Software Inc.'s TIBCO AuditSafe contains an easily exploitable vulnerability that allows an unauthenticated attacker with network access to execute API methods on the affected system. Affected releases are TIBCO Software Inc.'s TIBCO AuditSafe: versions 1.1.0 and below.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2022-22770.
What is the severity of CVE-2022-22770?
CVE-2022-22770 has a severity rating of 9.8 (Critical).
What is affected by CVE-2022-22770?
TIBCO Software Inc.'s TIBCO AuditSafe versions 1.1.0 up to exclusive version 1.1.1 are affected by CVE-2022-22770.
How can an attacker exploit CVE-2022-22770?
An unauthenticated attacker with network access can exploit CVE-2022-22770 by executing API methods on the affected system.
How can I fix CVE-2022-22770?
To fix CVE-2022-22770, it is recommended to update to a version of TIBCO AuditSafe that is not affected by the vulnerability. Please refer to the TIBCO Software Inc. advisory for more information.