CVE-2022-22776: TIBCO BusinessConnect Trading Community Management Stored Cross Site Scripting Vulnerability
The Web Server component of TIBCO Software Inc.'s TIBCO BusinessConnect Trading Community Management contains easily exploitable vulnerabilities that allows a low privileged attacker with network access to execute Stored Cross Site Scripting (XSS) on the affected system. A successful attack using these vulnerabilities requires human interaction from a person other than the attacker. Affected releases are TIBCO Software Inc.'s TIBCO BusinessConnect Trading Community Management: versions 6.1.0 and below.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the vulnerability ID of this vulnerability?
The vulnerability ID is CVE-2022-22776.
What is the severity of CVE-2022-22776?
The severity of CVE-2022-22776 is high with a severity value of 5.4.
What is the affected software?
The affected software is TIBCO BusinessConnect Trading Community Management version 6.1.1.
What is the CWE of CVE-2022-22776?
The CWE of CVE-2022-22776 is CWE-79.
How can this vulnerability be exploited?
This vulnerability can be exploited by a low privileged attacker with network access to execute Stored Cross Site Scripting (XSS) on the affected system.