CVE-2022-41559: TIBCO Nimbus Open Redirect Vulnerability
The Web Client component of TIBCO Software Inc.'s TIBCO Nimbus contains an easily exploitable vulnerability that allows an unauthenticated attacker with network access to exploit an open redirect on the affected system. A successful attack using this vulnerability requires human interaction from a person other than the attacker. Affected releases are TIBCO Software Inc.'s TIBCO Nimbus: version 10.5.0.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2022-41559?
CVE-2022-41559 is a vulnerability in the Web Client component of TIBCO Software Inc.'s TIBCO Nimbus that allows an unauthenticated attacker to exploit an open redirect on the affected system.
How severe is CVE-2022-41559?
CVE-2022-41559 has a severity rating of critical, with a CVSS score of 9.3.
Which software versions are affected by CVE-2022-41559?
TIBCO Nimbus version 10.5.0 is affected by CVE-2022-41559.
How does an attacker exploit CVE-2022-41559?
An attacker with network access can exploit the open redirect vulnerability in the Web Client component of TIBCO Nimbus on an affected system.
How can I fix CVE-2022-41559?
To fix CVE-2022-41559, it is recommended to apply the necessary security patches provided by TIBCO Software Inc. and update to a version where the vulnerability is patched.